Mike Gabriel pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
537b9801 by Mike Gabriel at 2020-11-02T14:45:58+01:00
data/CVE/list: Mark CVE-2019-14902/samba/jessie as <ignored>. Too 
difficult and risky to backport.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -81240,8 +81240,9 @@ CVE-2019-14902 (There is an issue in all samba 4.11.x 
versions before 4.11.5, al
        - samba 2:4.11.5+dfsg-1
        [buster] - samba <no-dsa> (Minor issue)
        [stretch] - samba <no-dsa> (Minor issue)
-       [jessie] - samba <no-dsa> (Minor issue)
+       [jessie] - samba <ignored> (difficult and risky backport to 4.2 in 
jessie)
        NOTE: https://www.samba.org/samba/security/CVE-2019-14902.html
+       NOTE: Workaround: Use of 'samba-tool drs replicate $DC1 $DC2 $NC 
--full-sync' will cause all ACLs to be syncronised from DC2 to DC1, for the 
given NC (naming context)
 CVE-2019-14901 (A heap overflow flaw was found in the Linux kernel, all 
versions 3.x.x ...)
        {DLA-2114-1 DLA-2068-1}
        - linux 5.4.13-1



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/537b9801f16be8ce5678d30020e1373f71f2a5ca

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/537b9801f16be8ce5678d30020e1373f71f2a5ca
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to