[Secure-testing-commits] r18630 - data/CVE

Yves-Alexis Perez corsac at alioth.debian.org
Sat Mar 10 13:20:21 UTC 2012


Author: corsac
Date: 2012-03-10 13:20:20 +0000 (Sat, 10 Mar 2012)
New Revision: 18630

Modified:
   data/CVE/list
Log:
add CVE for python hash DoS


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-03-10 11:03:28 UTC (rev 18629)
+++ data/CVE/list	2012-03-10 13:20:20 UTC (rev 18630)
@@ -813,6 +813,13 @@
 	RESERVED
 CVE-2012-1150
 	RESERVED
+	- python2.6 <unfixed> (unimportant)
+	- python2.7 <unfixed> (unimportant)
+	- python3.2 <unfixed> (unimportant)
+	[squeeze] - python2.5 <no-dsa> (unimportant)
+	[squeeze] - python2.6 <no-dsa> (unimportant)
+	[squeeze] - python3.1 <no-dsa> (unimportant)
+	NOTE: the same hash DoS attack as other languages/bindings
 CVE-2012-1149
 	RESERVED
 	- expat <unfixed> (unimportant)




More information about the Secure-testing-commits mailing list