Package: ledger Version: 3.1.2~pre1+g3a00e1c+dfsg1-2+b1 Severity: normal Tags: security
CVE-2017-12481 was assigned to http://bugs.ledger-cli.org/show_bug.cgi?id=1222 and CVE-2017-12482 was assigned to http://bugs.ledger-cli.org/show_bug.cgi?id=1224 CVE-2017-12482 is probably entirely mitigated by the hardening build options and it general is feels somewhat silly to assign CVE IDs for such crashes... Cheers, Moritz _______________________________________________ Secure-testing-team mailing list [email protected] http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-team

