[Secure-testing-commits] r20388 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Tue Oct 23 06:17:26 UTC 2012


Author: fgeek-guest
Date: 2012-10-23 06:17:26 +0000 (Tue, 23 Oct 2012)
New Revision: 20388

Modified:
   data/CVE/list
Log:
ssmtp issue won't get CVE-identifier.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-10-23 06:01:55 UTC (rev 20387)
+++ data/CVE/list	2012-10-23 06:17:26 UTC (rev 20388)
@@ -211,9 +211,6 @@
 	NOT-FOR-US: ActiveTcl
 CVE-2012-5377 (Untrusted search path vulnerability in the installation functionality ...)
 	NOT-FOR-US: ActivePerl
-CVE-2012-XXXX [ssmtp doesn't validate server TLS certificates]
-	- ssmtp <unfixed> (unimportant; bug #662960)
-	NOTE: http://www.openwall.com/lists/oss-security/2012/10/10/6
 CVE-2012-5353 (Eduserv OpenAthens SP 2.0 for Java allows remote attackers to forge ...)
 	NOT-FOR-US: Eduserv
 CVE-2012-5352 (Java Open Single Sign-On Project Home (JOSSO) allows remote attackers ...)




More information about the Secure-testing-commits mailing list