[Secure-testing-commits] r11788 - data/CVE

Nico Golde nion at alioth.debian.org
Tue May 5 12:59:08 UTC 2009


Author: nion
Date: 2009-05-05 12:59:08 +0000 (Tue, 05 May 2009)
New Revision: 11788

Modified:
   data/CVE/list
Log:
CVE-2009-1494 fixed in memcached 1.2.8-1, but unimportant

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-05-05 11:45:08 UTC (rev 11787)
+++ data/CVE/list	2009-05-05 12:59:08 UTC (rev 11788)
@@ -70,7 +70,8 @@
 	NOTE: http://jira.codehaus.org/browse/JETTY-1004 
 	NOTE: It's not entirely clear, whether version 5 is affected
 CVE-2009-1494 (The process_stat function in Memcached 1.2.8 discloses ...)
-	- memcached <unfixed> (low; bug filed)
+	- memcached 1.2.8-1 (unimportant; bug #526554)
+	NOTE: no security issue by itself just hardening
 CVE-2009-1493 (The customDictionaryOpen spell method in the JavaScript API in Adobe ...)
 	NOT-FOR-US: Adobe Reader
 CVE-2009-1492 (The getAnnots Doc method in the JavaScript API in Adobe Reader and ...)




More information about the Secure-testing-commits mailing list