[Secure-testing-commits] r16092 - data/CVE
Raphael Geissert
geissert at alioth.debian.org
Wed Feb 9 22:32:32 UTC 2011
Author: geissert
Date: 2011-02-09 22:32:32 +0000 (Wed, 09 Feb 2011)
New Revision: 16092
Modified:
data/CVE/list
Log:
java issue got its own id
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2011-02-09 21:15:06 UTC (rev 16091)
+++ data/CVE/list 2011-02-09 22:32:32 UTC (rev 16092)
@@ -1245,8 +1245,6 @@
NOTE: CVE ID requested
CVE-2010-4645 (strtod.c, as used in the zend_strtod function in PHP 5.2 before 5.2.17 ...)
- php5 5.3.3-7 (high)
- - openjdk-6 <unfixed>
- - sun-java6 <unfixed>
[lenny] - php5 <unfixed> (high)
NOTE: lenny9 doesn't appear to be affected, for a reason still unknown
CVE-2011-XXXX [Crash with long HOME environment variable]
@@ -2426,7 +2424,7 @@
CVE-2010-4476 [trivial DoS when parsing strings into Java Double objects]
RESERVED
- openjdk-6 <unfixed> (bug #612660)
- - sun-java6 <undetermined>
+ - sun-java6 <unfixed>
NOTE: Patch http://mail.openjdk.java.net/pipermail/core-libs-dev/2011-February/005795.html
NOTE: Oracle http://www.oracle.com/technetwork/topics/security/alert-cve-2010-4476-305811.html
NOTE: Original report http://www.exploringbinary.com/java-hangs-when-converting-2-2250738585072012e-308/
More information about the Secure-testing-commits
mailing list