[Secure-testing-commits] r24548 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Dec 3 21:28:57 UTC 2013


Author: carnil
Date: 2013-12-03 21:28:57 +0000 (Tue, 03 Dec 2013)
New Revision: 24548

Modified:
   data/CVE/list
Log:
Add CVE-2013-6414

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-12-03 21:22:24 UTC (rev 24547)
+++ data/CVE/list	2013-12-03 21:28:57 UTC (rev 24548)
@@ -1099,8 +1099,14 @@
 	RESERVED
 CVE-2013-6415
 	RESERVED
-CVE-2013-6414
+CVE-2013-6414 [Denial of Service Vulnerability]
 	RESERVED
+	- ruby-actionpack-4.0 <unfixed>
+	- ruby-actionpack-3.2 <unfixed>
+	- ruby-actionpack-2.3 <not-affected> (vulnerable code not present)
+	- rails 2.3.14.1
+	NOTE: Starting with 2.3.14.1 rails is a transition package
+	TODO: check, report to BTS
 CVE-2013-6413 [unrealircd: DoS, use after free]
 	RESERVED
 	- unrealircd <itp> (bug #515130)




More information about the Secure-testing-commits mailing list