[Secure-testing-commits] r24716 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Dec 12 17:55:39 UTC 2013


Author: carnil
Date: 2013-12-12 17:55:39 +0000 (Thu, 12 Dec 2013)
New Revision: 24716

Modified:
   data/CVE/list
Log:
Update CVE-2013-7049 entry

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-12-12 16:11:30 UTC (rev 24715)
+++ data/CVE/list	2013-12-12 17:55:39 UTC (rev 24716)
@@ -34,9 +34,10 @@
 	TODO: check plone/zope
 CVE-2013-7060 [Filesystem path information leak]
 	TODO: check plone/zope
-CVE-2013-7049
-	TODO: check
+CVE-2013-7049 [ZNC IRC Bouncer DoS in FiSH Plugin]
+	NOTE: vulnerable code not found in Debian
 	NOTE: http://www.openwall.com/lists/oss-security/2013/12/11/14
+	NOT-FOR-US: FiSH Plugin for ZNC IRC Bouncer
 CVE-2013-7048 [Nova live snapshots use an insecure local directory]
 	- nova <unfixed> (bug #732022)
 	[wheezy] - nova <not-affected> (Support for live snapshots added later)




More information about the Secure-testing-commits mailing list