[Secure-testing-commits] r19527 - data/CVE

Yves-Alexis Perez corsac at alioth.debian.org
Mon Jun 18 14:04:45 UTC 2012


Author: corsac
Date: 2012-06-18 14:04:45 +0000 (Mon, 18 Jun 2012)
New Revision: 19527

Modified:
   data/CVE/list
Log:
add various missing CVEs present in UNCHECKED


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-06-18 08:53:04 UTC (rev 19526)
+++ data/CVE/list	2012-06-18 14:04:45 UTC (rev 19527)
@@ -1706,9 +1706,12 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2012/06/17/1
 CVE-2012-2738
 	RESERVED
+	- libvte9 <unfixed> (bug #677717)
 CVE-2012-2737
 	RESERVED
-CVE-2012-2736
+CVE-2012-2736 [NetworkManager: creating new WPA-secured wireless network results in insecure network being created instead]
+	- network-manager <unfixed> (bug #655972)
+	NOTE: this might warrant a CVE for the kernel too
 	RESERVED
 CVE-2012-2735
 	RESERVED
@@ -1842,6 +1845,7 @@
 	RESERVED
 CVE-2012-2679
 	RESERVED
+	NOT-FOR-US: Red Hat Network configuration client
 CVE-2012-2678
 	RESERVED
 CVE-2012-2677
@@ -1936,8 +1940,9 @@
 	{DSA-2481-1}
 	- arpwatch 2.1a15-1.2 (bug #674715)
 	NOTE: Debian build includes the vulnerable patch (in .diff.gz)
-CVE-2012-2652
+CVE-2012-2652 [vulnerable to temporary file symlink attacks]
 	RESERVED
+	- qemu <unfixed>
 CVE-2012-2651
 	RESERVED
 CVE-2012-2650




More information about the Secure-testing-commits mailing list