Mike Gabriel pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
537b9801 by Mike Gabriel at 2020-11-02T14:45:58+01:00
data/CVE/list: Mark CVE-2019-14902/samba/jessie as <ignored>. Too
difficult and risky to backport.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -81240,8 +81240,9 @@ CVE-2019-14902 (There is an issue in all samba 4.11.x
versions before 4.11.5, al
- samba 2:4.11.5+dfsg-1
[buster] - samba <no-dsa> (Minor issue)
[stretch] - samba <no-dsa> (Minor issue)
- [jessie] - samba <no-dsa> (Minor issue)
+ [jessie] - samba <ignored> (difficult and risky backport to 4.2 in
jessie)
NOTE: https://www.samba.org/samba/security/CVE-2019-14902.html
+ NOTE: Workaround: Use of 'samba-tool drs replicate $DC1 $DC2 $NC
--full-sync' will cause all ACLs to be syncronised from DC2 to DC1, for the
given NC (naming context)
CVE-2019-14901 (A heap overflow flaw was found in the Linux kernel, all
versions 3.x.x ...)
{DLA-2114-1 DLA-2068-1}
- linux 5.4.13-1
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/537b9801f16be8ce5678d30020e1373f71f2a5ca
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/537b9801f16be8ce5678d30020e1373f71f2a5ca
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits