[Secure-testing-commits] r19136 - in data: . CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Fri May 4 12:41:42 UTC 2012


Author: jmm
Date: 2012-05-04 12:41:41 +0000 (Fri, 04 May 2012)
New Revision: 19136

Modified:
   data/CVE/list
   data/spu-candidates.txt
Log:
jboss issue doesn't affect Debian
glibc issue even affects sid, bug filed, no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-05-04 12:02:10 UTC (rev 19135)
+++ data/CVE/list	2012-05-04 12:41:41 UTC (rev 19136)
@@ -7264,13 +7264,11 @@
 	- linux-2.6 3.0.0-1
 CVE-2011-4610
 	RESERVED
-	- jbossas4 <undetermined>
-	TODO: check
+	- jbossas4 <not-affected> (Only builds a few libraries, not the full application server)
 CVE-2011-4609
 	RESERVED
-	- eglibc <unfixed>
-	- glibc <unfixed>
-	TODO: check
+	- eglibc <unfixed> (low; bug #671478)
+	[squeeze] - eglibc <no-dsa> (Minor issue, can be fixed in next point update)
 CVE-2011-4608 (mod_cluster in JBoss Enterprise Application Platform 5.1.2 for Red Hat ...)
 	- jbossas4 <not-affected> (Only builds a few libraries, not the full application server)
 CVE-2011-4607 [http://seclists.org/oss-sec/2011/q4/500]

Modified: data/spu-candidates.txt
===================================================================
--- data/spu-candidates.txt	2012-05-04 12:02:10 UTC (rev 19135)
+++ data/spu-candidates.txt	2012-05-04 12:41:41 UTC (rev 19136)
@@ -81,6 +81,9 @@
 
 eglibc (CVE-2012-0864)
 
+CVE-2011-4609
+
+
 --
 
 fabric (CVE-2011-2185)




More information about the Secure-testing-commits mailing list