[Secure-testing-commits] r19446 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Thu Jun 7 07:57:40 UTC 2012


Author: jmm
Date: 2012-06-07 07:57:40 +0000 (Thu, 07 Jun 2012)
New Revision: 19446

Modified:
   data/CVE/list
Log:
one iceweasel issue only in experimental
new nss issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-06-07 07:33:22 UTC (rev 19445)
+++ data/CVE/list	2012-06-07 07:57:40 UTC (rev 19446)
@@ -2833,7 +2833,7 @@
 CVE-2012-1939 (jsinfer.cpp in Mozilla Firefox ESR 10.x before 10.0.5 and Thunderbird ...)
 	- iceweasel 10.0.5esr-1
 CVE-2012-1938 (Multiple unspecified vulnerabilities in the browser engine in Mozilla ...)
-	- iceweasel 10.0.5esr-1
+	- iceweasel <not-affected> (Only affects iceweasel from experimental)
 CVE-2012-1937 (Multiple unspecified vulnerabilities in the browser engine in Mozilla ...)
 	- iceweasel 10.0.5esr-1
 CVE-2012-1936 (** DISPUTED ** The wp_create_nonce function in ...)
@@ -6562,7 +6562,7 @@
 	- iceape 2.0.14-10
 	[lenny] - iceape <not-affected> (Only a stub package)
 CVE-2012-0441 (The ASN.1 decoder in the QuickDER decoder in Mozilla Network Security ...)
-	TODO: check
+	- nss <unfixed>
 CVE-2012-0440 (Cross-site request forgery (CSRF) vulnerability in jsonrpc.cgi in ...)
 	- bugzilla <removed> (low)
 	[squeeze] - bugzilla <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list