[Secure-testing-commits] r14480 - data/CVE

Florian Weimer fw at alioth.debian.org
Wed Apr 14 09:49:31 UTC 2010


Author: fw
Date: 2010-04-14 09:49:30 +0000 (Wed, 14 Apr 2010)
New Revision: 14480

Modified:
   data/CVE/list
Log:
aircrack-ng EAPOL buffer overflow: bug filed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-04-14 09:29:48 UTC (rev 14479)
+++ data/CVE/list	2010-04-14 09:49:30 UTC (rev 14480)
@@ -247,11 +247,10 @@
 	NOTE: http://git.kernel.org/linus/b525c06cdbd8a3963f0173ccd23f9147d4c384b5
 	TODO: check affected/fixed versions, Moritz?
 CVE-2010-XXXX [aircrack-ng EAPOL buffer overflow]
-	- aircrack-ng <unfixed> (low)
+	- aircrack-ng <unfixed> (low; bug #577758)
 	[lenny] - aircrack-ng <no-dsa> (low)
 	[etch] - aircrack-ng <no-dsa> (low)
 	NOTE: http://pyrit.googlecode.com/svn/tags/opt/aircrackng_exploit.py
-	TODO: file bug, request id
 CVE-2010-1244 (Cross-site request forgery (CSRF) vulnerability in ...)
 	NOT-FOR-US: Apache ActiveMQ
 CVE-2010-1243 (The IBM Web Interface for Content Management (aka WEBi) before 1.0.4 ...)




More information about the Secure-testing-commits mailing list