[Secure-testing-commits] r19246 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Mon May 14 12:47:35 UTC 2012


Author: fgeek-guest
Date: 2012-05-14 12:47:35 +0000 (Mon, 14 May 2012)
New Revision: 19246

Modified:
   data/CVE/list
Log:
Reported libsoup2.4 bug CVE-2012-2132

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-05-14 12:07:31 UTC (rev 19245)
+++ data/CVE/list	2012-05-14 12:47:35 UTC (rev 19246)
@@ -1232,8 +1232,9 @@
 	- linux-2.6 <unfixed>
 CVE-2012-2132 [libsoup 2.32.2 sets ssl trusted flag despite no verification]
 	RESERVED
-	TODO: check
+	- libsoup2.4 <unfixed> (bug #672880)
 	NOTE: https://bugzilla.novell.com/show_bug.cgi?id=758431
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=817692
 CVE-2012-2131 (Multiple integer signedness errors in crypto/buffer/buffer.c in ...)
 	{DSA-2454-2}
 	- openssl <not-affected> (only affected patch against 0.9.8)




More information about the Secure-testing-commits mailing list