[Secure-testing-commits] r16737 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Tue May 31 14:12:15 UTC 2011


Author: jmm
Date: 2011-05-31 14:12:15 +0000 (Tue, 31 May 2011)
New Revision: 16737

Modified:
   data/CVE/list
Log:
new httpcomponents-client issue (FD: please create ticket/file bug)


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-05-31 14:05:28 UTC (rev 16736)
+++ data/CVE/list	2011-05-31 14:12:15 UTC (rev 16737)
@@ -1698,6 +1698,9 @@
 	[lenny] - tinyproxy <not-affected> (Vulnerable code not present)
 CVE-2011-1498
 	RESERVED
+	- httpcomponents-client <unfixed>
+	NOTE: http://seclists.org/oss-sec/2011/q2/188
+	NOTE: http://www.apache.org/dist/httpcomponents/httpclient/RELEASE_NOTES-4.1.x.txt
 CVE-2011-1497
 	RESERVED
 CVE-2011-1496 (tmux 1.3 and 1.4 does not properly drop group privileges, which allows ...)




More information about the Secure-testing-commits mailing list