From 83263a49b0e2ade36a7f0d01d06a0453f8c7ef3f Mon Sep 17 00:00:00 2001 From: Colin Watson Date: Tue, 23 Jan 2018 13:15:51 +0000 Subject: Retroactively mention CVE-2017-15906 in changelog --- debian/changelog | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'debian') diff --git a/debian/changelog b/debian/changelog index 79f39eb50..b8e2d9a65 100644 --- a/debian/changelog +++ b/debian/changelog @@ -33,7 +33,7 @@ openssh (1:7.6p1-2) unstable; urgency=medium openssh (1:7.6p1-1) unstable; urgency=medium * New upstream release (https://www.openssh.com/txt/release-7.6): - - SECURITY: sftp-server(8): In read-only mode, sftp-server was + - CVE-2017-15906: sftp-server(8): In read-only mode, sftp-server was incorrectly permitting creation of zero-length files. Reported by Michal Zalewski. - ssh(1): Delete SSH protocol version 1 support, associated -- cgit v1.2.3