[Secure-testing-commits] r20358 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Tue Oct 16 13:49:08 UTC 2012


Author: jmm
Date: 2012-10-16 13:49:08 +0000 (Tue, 16 Oct 2012)
New Revision: 20358

Modified:
   data/CVE/list
Log:
filed bugs for librdmacm and libsocialweb
ruby issue only affects 1.9.x


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-10-16 09:54:53 UTC (rev 20357)
+++ data/CVE/list	2012-10-16 13:49:08 UTC (rev 20358)
@@ -2290,7 +2290,7 @@
 	RESERVED
 CVE-2012-4522 [ruby Unintentional file creation caused by inserting a illegal NUL character]
 	RESERVED
-	- ruby1.8 <undetermined>
+	- ruby1.8 <not-affected> (Only affects 1.9.x, see bug #690670)
 	- ruby1.9.1 <unfixed> (bug #690670)
 CVE-2012-4521 [rejected dupe assignment]
 	RESERVED
@@ -2307,7 +2307,7 @@
 	NOT-FOR-US: ibacm
 CVE-2012-4516
 	RESERVED
-	- librdmacm <unfixed>
+	- librdmacm <unfixed> (bug #690672)
 CVE-2012-4515
 	RESERVED
 	- kdebase <removed> (unimportant)
@@ -2330,7 +2330,8 @@
 	NOTE: Konqueror not supported security-wise
 CVE-2012-4511 [libsocialweb untrusted connection to flickr]
 	RESERVED
-	- libsocialweb <unfixed>
+	- libsocialweb <unfixed> (low; bug #690675)
+	[wheezy] - libsocialweb <no-dsa> (Minor issue)
 CVE-2012-4510 [cups-pk-helper cupsGetFile/cupsPutFile]
 	RESERVED
 	- cups-pk-helper 0.2.3-1




More information about the Secure-testing-commits mailing list