Skip to content
Commits on Source (2)
......@@ -4235,6 +4235,7 @@ CVE-2017-18286 (nZEDb v0.7.3.3 has XSS in the 404 error page. ...)
NOT-FOR-US: nZEDb
CVE-2016-1000352 (In the Bouncy Castle JCE Provider version 1.55 and earlier the ECIES ...)
- bouncycastle 1.56-1
[jessie] - bouncycastle <ignored> (Intrusive changes, can be mitigated by using a different mode than ECB)
NOTE: https://github.com/bcgit/bc-java/commit/9385b0ebd277724b167fe1d1456e3c112112be1f
CVE-2016-1000346 (In the Bouncy Castle JCE Provider version 1.55 and earlier the other ...)
- bouncycastle 1.56-1
......@@ -4244,6 +4245,7 @@ CVE-2016-1000345 (In the Bouncy Castle JCE Provider version 1.55 and earlier the
NOTE: https://github.com/bcgit/bc-java/commit/21dcb3d9744c83dcf2ff8fcee06dbca7bfa4ef35#diff-4439ce586bf9a13bfec05c0d113b8098
CVE-2016-1000344 (In the Bouncy Castle JCE Provider version 1.55 and earlier the DHIES ...)
- bouncycastle 1.56-1
[jessie] - bouncycastle <ignored> (Intrusive changes, can be mitigated by using a different mode than ECB)
NOTE: https://github.com/bcgit/bc-java/commit/9385b0ebd277724b167fe1d1456e3c112112be1f
CVE-2018-11717
RESERVED
......@@ -62240,7 +62242,6 @@ CVE-2016-1000360
REJECTED
CVE-2016-1000338 (In Bouncy Castle JCE Provider version 1.55 and earlier the DSA does ...)
- bouncycastle 1.56-1
[jessie] - bouncycastle <no-dsa> (Minor issue)
NOTE: https://github.com/bcgit/bc-java/commit/b0c3ce99d43d73a096268831d0d120ffc89eac7f#diff-3679f5a9d2b939d0d3ee1601a7774fb0
CVE-2017-8829 (Deserialization vulnerability in lintian through 2.5.50.3 allows ...)
- lintian 2.5.50.4 (bug #861958)