Skip to content
Commits on Source (2)
......@@ -96,11 +96,7 @@ polarssl
NOTE: 20121207: Not 100% sure if vulnerable. Upstream would prefer us to move to latest version, etc. (!). (lamby)
--
policykit-1 (Emilio)
NOTE: 20181207: jessie vulnerable to CVE-2018-19788? unable to reproduce systemctl poc (Santiago)
NOTE: 20181230: needs source code analysis
--
poppler
NOTE: 20190116: CVE-2018-20650 is easy to fix, not yet triage for stretch, probably no-dsa
NOTE: 20190119: fix for CVE-2018-19788 not fully functional, investigating complete fix
--
python3.4 (Brian May)
NOTE: 20181225: The update should include also the postponed and no-dsa
......