[Secure-testing-commits] r20137 - in data: CVE DSA

Nico Golde nion at alioth.debian.org
Tue Sep 11 18:00:23 UTC 2012


Author: nion
Date: 2012-09-11 18:00:23 +0000 (Tue, 11 Sep 2012)
New Revision: 20137

Modified:
   data/CVE/list
   data/DSA/list
Log:
DSA-2546-1 (freeradius), also fixed in freeradius 2.1.12+dfsg-1.1

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-09-11 17:25:09 UTC (rev 20136)
+++ data/CVE/list	2012-09-11 18:00:23 UTC (rev 20137)
@@ -3290,7 +3290,7 @@
 	NOTE: Doesn't allow code injection
 CVE-2012-3547 [EAP-TLS buffer overflow]
 	RESERVED
-	- freeradius <unfixed> (medium; bug #687175)
+	- freeradius 2.1.12+dfsg-1.1 (medium; bug #687175)
 CVE-2012-3546
 	RESERVED
 CVE-2012-3545

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2012-09-11 17:25:09 UTC (rev 20136)
+++ data/DSA/list	2012-09-11 18:00:23 UTC (rev 20137)
@@ -1,3 +1,6 @@
+[11 Sep 2012] DSA-2546-1 freeradius - code execution
+	{CVE-2012-3547}
+	[squeeze] - freeradius 2.1.10+dfsg-2+squeeze1
 [08 Sep 2012] DSA-2545-1 qemu - multiple
 	{CVE-2012-2652 CVE-2012-3515}
 	[squeeze] - qemu 0.12.5+dfsg-3squeeze2




More information about the Secure-testing-commits mailing list