[Secure-testing-commits] r11007 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Wed Jan 21 17:34:29 UTC 2009


Author: white
Date: 2009-01-21 17:34:28 +0000 (Wed, 21 Jan 2009)
New Revision: 11007

Modified:
   data/CVE/list
Log:
New iceweasel issue is a browser crash, not a security issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-01-21 17:20:27 UTC (rev 11006)
+++ data/CVE/list	2009-01-21 17:34:28 UTC (rev 11007)
@@ -285,7 +285,8 @@
 CVE-2009-0072 (Microsoft Internet Explorer 6.0 through 8.0 beta2 allows remote ...)
 	NOT-FOR-US: Internet Explorer
 CVE-2009-0071 (Mozilla Firefox 3.0.5 and earlier 3.0.x versions, when designMode is ...)
-	TODO: check
+	- iceweasel <unfixed> (unimportant)
+        NOTE: Browser crashes not treated as security issues
 CVE-2009-0070 (Integer signedness error in Apple Safari allows remote attackers to ...)
 	NOT-FOR-US: Apple Safari
 CVE-2008-5880 (admin/auth.php in Gobbl CMS 1.0 allows remote attackers to bypass ...)




More information about the Secure-testing-commits mailing list