[Secure-testing-commits] r12223 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Mon Jun 29 16:58:21 UTC 2009


Author: gilbert-guest
Date: 2009-06-29 16:58:20 +0000 (Mon, 29 Jun 2009)
New Revision: 12223

Modified:
   data/CVE/list
Log:
CVE-2009-1709: webkit is actually fixed; reverting my previous change


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-06-29 12:41:28 UTC (rev 12222)
+++ data/CVE/list	2009-06-29 16:58:20 UTC (rev 12223)
@@ -1240,9 +1240,8 @@
 CVE-2009-1710 (WebKit in Apple Safari before 4.0 allows remote attackers to spoof the ...)
 	TODO: check
 CVE-2009-1709 (Use-after-free vulnerability in the garbage-collection implementation ...)
-	- webkit <unfixed>
-	TODO: determine appropriate webkit fixed version 
-	NOTE: http://trac.webkit.org/changeset/32039
+	- webkit 0~svn32442-1
+	NOTE: fixed in upstream commit http://trac.webkit.org/changeset/32230
 	- kde4libs <not-affected> (Vulnerable code not present)
 	- kdegraphics 4:4.0 (medium; bug #534951)
 	NOTE: kdegraphics >4.0 not affected since ksvg is only in 3.5.x series)




More information about the Secure-testing-commits mailing list