Author: jmm Date: 2016-03-13 18:44:51 +0000 (Sun, 13 Mar 2016) New Revision: 40353
Modified: data/CVE/list Log: mark fixes for firefox in sid Modified: data/CVE/list =================================================================== --- data/CVE/list 2016-03-13 18:18:43 UTC (rev 40352) +++ data/CVE/list 2016-03-13 18:44:51 UTC (rev 40353) @@ -449,6 +449,8 @@ NOTE: Fixed in 2016.72 upstream CVE-2016-3115 [xauth command injection] - openssh 1:7.2p2-1 + [jessie] - openssh <no-dsa> (Minor issue) + [wheezy] - openssh <no-dsa> (Minor issue) NOTE: http://www.openssh.com/txt/x11fwd.adv NOTE: Portable OpenSSH 7.2p2 contains a fix for this vulnerability. NOTE: http://www.openwall.com/lists/oss-security/2016/03/10/8 @@ -676,78 +678,104 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2801 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2800 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2799 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2798 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2797 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2796 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2795 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2794 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2793 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2792 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2791 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2790 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-2789 @@ -3443,6 +3471,8 @@ CVE-2016-1979 RESERVED - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-36/ @@ -3462,6 +3492,8 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-37/ - graphite2 1.3.6-1 CVE-2016-1976 @@ -3474,10 +3506,14 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-34/ CVE-2016-1973 RESERVED - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-33/ @@ -3495,6 +3531,8 @@ CVE-2016-1968 RESERVED - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-30/ @@ -3503,6 +3541,8 @@ CVE-2016-1967 RESERVED - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-29/ @@ -3510,20 +3550,28 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-31/ CVE-2016-1965 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-28/ CVE-2016-1964 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-27/ CVE-2016-1963 RESERVED - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-26/ @@ -3531,19 +3579,27 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-25/ CVE-2016-1961 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-24/ CVE-2016-1960 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-23/ CVE-2016-1959 RESERVED + - firefox-esr 45.0esr-1 + - firefox 45.0-1 - iceweasel <unfixed> [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) @@ -3552,21 +3608,29 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-21/ CVE-2016-1957 RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-20/ CVE-2016-1956 RESERVED - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-19/ CVE-2016-1955 RESERVED - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-18/ @@ -3574,10 +3638,14 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-17/ CVE-2016-1953 RESERVED - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 44.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 44.x) NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-16/ @@ -3585,6 +3653,8 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-16/ CVE-2016-1951 RESERVED @@ -3592,11 +3662,15 @@ RESERVED {DSA-3510-1} - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-35/ - nss 2:3.23-1 NOTE: NSS fixed in 3.21.1 CVE-2016-1949 (Mozilla Firefox before 44.0.2 does not properly restrict the ...) - iceweasel <unfixed> + - firefox-esr 45.0esr-1 + - firefox 45.0-1 [jessie] - iceweasel <not-affected> (Only affects Firefox 43.x) [wheezy] - iceweasel <not-affected> (Only affects Firefox 43.x) [squeeze] - iceweasel <not-affected> (Only affects Firefox 43.x) _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits