[Secure-testing-commits] r18683 - data/CVE

Luciano Bello luciano at alioth.debian.org
Thu Mar 15 20:00:38 UTC 2012


Author: luciano
Date: 2012-03-15 20:00:38 +0000 (Thu, 15 Mar 2012)
New Revision: 18683

Modified:
   data/CVE/list
Log:
python and nginx issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-03-15 19:39:38 UTC (rev 18682)
+++ data/CVE/list	2012-03-15 20:00:38 UTC (rev 18683)
@@ -990,8 +990,10 @@
 	RESERVED
 CVE-2012-1181
 	RESERVED
-CVE-2012-1180
+CVE-2012-1180 [nginx fix for malformed HTTP responses from upstream servers]
 	RESERVED
+	- nginx <unfixed> (bug #664137)
+	NOTE: http://seclists.org/oss-sec/2012/q1/644
 CVE-2012-1179
 	RESERVED
 CVE-2012-1178 [pidgin: Possible MSN remote crash]
@@ -3588,8 +3590,8 @@
 CVE-2011-4940 [python: potential XSS in SimpleHTTPServer's list_directory()]
 	RESERVED
 	- python2.7 2.7.2-8
-	- python2.6 <unfixed> (low)
-	- python2.5 <removed> (low)
+	- python2.6 <unfixed> (low; bug #664135)
+	- python2.5 <removed> 
 	NOTE: http://www.openwall.com/lists/oss-security/2012/03/14/11
 CVE-2011-4939 [XMPP remote crash]
 	RESERVED




More information about the Secure-testing-commits mailing list