Skip to content
Commits on Source (2)
......@@ -3094,7 +3094,7 @@ CVE-2017-18239 (A time-sensitive equality check on the JWT signature in the ...)
CVE-2018-8768 (In Jupyter Notebook before 5.4.1, a maliciously forged notebook file ...)
- jupyter-notebook 5.4.1-1 (bug #893436)
- ipython 5.1.0-2
[wheezy] - ipython <no-dsa> (requires implementation of sanitization first, see NOTES)
[wheezy] - ipython <ignored> (Too invasive to fix)
NOTE: After the reupload of ipython to Debian as 4.1.2-1 via experimental
NOTE: src:ipython does not provide anymore the Notebook
NOTE: http://www.openwall.com/lists/oss-security/2018/03/15/2
......@@ -8288,6 +8288,7 @@ CVE-2018-6829 (cipher/elgamal.c in Libgcrypt through 1.8.2, when used to encrypt
- libgcrypt11 <removed> (unimportant)
- gnupg1 <unfixed> (unimportant)
- gnupg <removed> (unimportant)
[wheezy] libgcrypt <no-dsa> (unimportant)
NOTE: https://github.com/weikengchen/attack-on-libgcrypt-elgamal
NOTE: https://github.com/weikengchen/attack-on-libgcrypt-elgamal/wiki
NOTE: https://lists.gnupg.org/pipermail/gcrypt-devel/2018-February/004394.html
......@@ -52,8 +52,6 @@ libav (Hugo Lefeuvre)
NOTE: I am currently working on CVE triage but I will not be able to process the whole backlog until May.
NOTE: Help is welcome, feel free to mail Hugo.
--
libgcrypt11
--
libmad (Kurt Roeckx)
--
libraw
......