[Secure-testing-commits] r24569 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Dec 4 07:32:10 UTC 2013


Author: jmm
Date: 2013-12-04 07:32:10 +0000 (Wed, 04 Dec 2013)
New Revision: 24569

Modified:
   data/CVE/list
Log:
chromium fixed
correct hawtjni entry, no-dsa was intended
ufraw no-dsa
libjpeg8 fixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-12-04 07:29:38 UTC (rev 24568)
+++ data/CVE/list	2013-12-04 07:32:10 UTC (rev 24569)
@@ -1298,7 +1298,7 @@
 	- libjpeg6b <unfixed> (low; bug #729867)
 	[squeeze] - libjpeg6b <no-dsa> (Minor issue)
 	[wheezy] - libjpeg6b <no-dsa> (Minor issue)
-	- libjpeg8 <unfixed> (low; bug #729867)
+	- libjpeg8 8d-2 (low; bug #729867)
 	[squeeze] - libjpeg8 <no-dsa> (Minor issue)
 	[wheezy] - libjpeg8 <no-dsa> (Minor issue)
 	NOTE: http://packetstormsecurity.com/files/123989/IJG-jpeg6b-libjpeg-turbo-Uninitialized-Memory.html
@@ -1310,7 +1310,7 @@
 	- libjpeg6b <unfixed> (low; bug #729867)
 	[squeeze] - libjpeg6b <no-dsa> (Minor issue)
 	[wheezy] - libjpeg6b <no-dsa> (Minor issue)
-	- libjpeg8 <unfixed> (low; bug #729867)
+	- libjpeg8 8d-2 (low; bug #729867)
 	[squeeze] - libjpeg8 <no-dsa> (Minor issue)
 	[wheezy] - libjpeg8 <no-dsa> (Minor issue)
 	NOTE: http://packetstormsecurity.com/files/123989/IJG-jpeg6b-libjpeg-turbo-Uninitialized-Memory.html
@@ -2603,7 +2603,7 @@
 	NOTE: https://bugzilla.mozilla.org/show_bug.cgi?id=858215
 CVE-2013-6166
 	RESERVED
-	- chromium-browser <unfixed> (low)
+	- chromium-browser 31.0.1650.57-1 (low)
 	[squeeze] - chromium-browser <end-of-life>
 	NOTE: https://code.google.com/p/chromium/issues/detail?id=238041
 CVE-2013-6129 (The install/upgrade.php scripts in vBulletin 4.1 and 5 allow remote ...)
@@ -12919,7 +12919,7 @@
 	NOT-FOR-US: Drupal module Filebrowser
 CVE-2013-2035 (hawtjni-runtime/src/main/java/org/fusesource/hawtjni/runtime/Library.java ...)
 	- hawtjni <unfixed> (low; bug #708293)
-	[wheezy] - hawtjni <unfixed> (low; bug #708293)
+	[wheezy] - hawtjni <no-dsa> (Minor issue)
 CVE-2013-2034 [jenkins CSRF]
 	RESERVED
 	- jenkins 1.509.2+dfsg-1 (bug #706725)
@@ -14991,6 +14991,7 @@
 	[wheezy] - darktable <no-dsa> (end-user app)
 	- dcraw <unfixed> (unimportant; bug #721232)
 	- ufraw 0.19.2-2 (bug #721234)
+	[wheezy] - ufraw <no-dsa> (end-user app)
 	- xmbc <unfixed> (unimportant; bug #721235)
 	- exactimage 0.8.9-1 (bug #721236)
 	- rawstudio <unfixed> (unimportant; bug #721237)




More information about the Secure-testing-commits mailing list