[Secure-testing-commits] r9784 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Tue Sep 9 13:24:46 UTC 2008


Author: white
Date: 2008-09-09 13:24:45 +0000 (Tue, 09 Sep 2008)
New Revision: 9784

Modified:
   data/CVE/list
Log:
2 ruby NFUs talking about ruby1.6

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-09-09 13:17:15 UTC (rev 9783)
+++ data/CVE/list	2008-09-09 13:24:45 UTC (rev 9784)
@@ -2845,9 +2845,9 @@
 	- linux-2.6 2.6.19-1
 	NOTE: 3022d734a54cbd2b65eea9a024564821101b4a9a
 CVE-2008-2728 (Integer overflow in the rb_ary_splice function in Ruby 1.6.x allows ...)
-	TODO: check
+	NOT-FOR-US: only Ruby 1.6 is affected
 CVE-2008-2727 (Integer overflow in the rb_ary_splice function in Ruby 1.6.x allows ...)
-	TODO: check
+	NOT-FOR-US: only Ruby 1.6 is affected
 CVE-2008-2726 (Integer overflow in the rb_ary_splice function in Ruby 1.8.4 and ...)
 	{DSA-1618-1 DSA-1612-1}
 	- ruby1.9 1.9.0.2-1




More information about the Secure-testing-commits mailing list