[Secure-testing-commits] r18320 - data/CVE

Paul Wise pabs at alioth.debian.org
Sat Jan 28 07:56:53 UTC 2012


Author: pabs
Date: 2012-01-28 07:56:53 +0000 (Sat, 28 Jan 2012)
New Revision: 18320

Modified:
   data/CVE/list
Log:
curl CVE-2012-0036 updates

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-01-28 07:33:04 UTC (rev 18319)
+++ data/CVE/list	2012-01-28 07:56:53 UTC (rev 18320)
@@ -2861,6 +2861,8 @@
 CVE-2012-0036 (URL sanitization vulnerability)
 	RESERVED
 	- curl 7.24.0-1
+	[lenny] - curl <not-affected> (Only affects 7.20.0 to 7.23.1)
+	NOTE: http://curl.haxx.se/docs/adv_20120124.html
 CVE-2012-0035 (Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as ...)
 	- cedet <unfixed> (low; bug #655299)
 	- emacs23 <unfixed> (low; bug #655300)




More information about the Secure-testing-commits mailing list