[Secure-testing-commits] r19924 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Aug 10 07:47:03 UTC 2012


Author: jmm
Date: 2012-08-10 07:47:03 +0000 (Fri, 10 Aug 2012)
New Revision: 19924

Modified:
   data/CVE/list
Log:
update rails entries, bug filed
new xen issue
new qpid-cpp issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-08-10 06:38:40 UTC (rev 19923)
+++ data/CVE/list	2012-08-10 07:47:03 UTC (rev 19924)
@@ -1,5 +1,8 @@
+CVE-2012-XXXX [owncloud privilege escalation]
+	- owncloud 4.0.5debian2-2
 CVE-2012-4225
 	RESERVED
+	NOT-FOR-US: Nvidia proprietary driver
 CVE-2012-4224
 	RESERVED
 CVE-2012-4223
@@ -1595,23 +1598,24 @@
 	RESERVED
 CVE-2012-3467
 	RESERVED
+	- qpid-cpp <unfixed> (bug #684456)
 CVE-2012-3466 [gpg passphrases cached forever]
 	RESERVED
 	- gnome-keyring <unfixed> (bug #683655)
 CVE-2012-3465
 	RESERVED
-	- rails <undetermined>
-	TODO: check
+	- rails <removed> (low)
+	- ruby-actionpack-3.2 <unfixed> (bug #684454)
 	NOTE: http://www.openwall.com/lists/oss-security/2012/08/09/9
 CVE-2012-3464
 	RESERVED
-	- rails <undetermined>
-	TODO: check
+	- rails <removed> (low)
+	- ruby-actionpack-3.2 <unfixed> (bug #684454)
 	NOTE: http://www.openwall.com/lists/oss-security/2012/08/09/10
 CVE-2012-3463
 	RESERVED
-	- rails <undetermined>
-	TODO: check
+	- rails <not-affected> (Only affects RoR 3.x)
+	- ruby-actionpack-3.2 <unfixed> (bug #684454)
 	NOTE: http://www.openwall.com/lists/oss-security/2012/08/09/8
 CVE-2012-3462
 	RESERVED
@@ -1703,6 +1707,7 @@
 	NOT-FOR-US: WordPress plugin Count Per Day
 CVE-2012-3433
 	RESERVED
+	- xen <unfixed> (bug #683279)
 CVE-2012-3432 [XSA-10: HVM guest user mode MMIO emulation DoS vulnerability]
 	RESERVED
 	- xen <unfixed> (bug #683279)




More information about the Secure-testing-commits mailing list