[Secure-testing-commits] r20341 - data/CVE

Thijs Kinkhorst thijs at alioth.debian.org
Sat Oct 13 13:34:25 UTC 2012


Author: thijs
Date: 2012-10-13 13:34:24 +0000 (Sat, 13 Oct 2012)
New Revision: 20341

Modified:
   data/CVE/list
Log:
consensus that this is a documented limitation


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-10-13 13:30:52 UTC (rev 20340)
+++ data/CVE/list	2012-10-13 13:34:24 UTC (rev 20341)
@@ -70,7 +70,7 @@
 CVE-2012-5377 (Untrusted search path vulnerability in the installation functionality ...)
 	NOT-FOR-US: ActivePerl
 CVE-2012-XXXX [ssmpt doesn't validate server TLS certificates]
-	- ssmtp <unfixed> (bug #662960)
+	- ssmtp <unfixed> (unimportant; bug #662960)
 	NOTE: http://www.openwall.com/lists/oss-security/2012/10/10/6
 CVE-2012-5353 (Eduserv allows remote attackers to forge messages and bypass ...)
 	TODO: check




More information about the Secure-testing-commits mailing list