[Secure-testing-commits] r24772 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Dec 16 21:45:03 UTC 2013


Author: carnil
Date: 2013-12-16 21:45:02 +0000 (Mon, 16 Dec 2013)
New Revision: 24772

Modified:
   data/CVE/list
Log:
Add icinga and nagios3 issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-12-16 21:37:22 UTC (rev 24771)
+++ data/CVE/list	2013-12-16 21:45:02 UTC (rev 24772)
@@ -9,6 +9,19 @@
 	NOTE: fix for CVE-2013-2073 was incorrect/incomplete
 	NOTE: https://github.com/transifex/transifex-client/issues/42
 	NOTE: https://github.com/transifex/transifex-client/commit/6d69d61
+CVE-2013-7108 [off-by-one read error]
+	- icinga <unfixed>
+	- nagios3 <unfixed>
+	NOTE: https://dev.icinga.org/issues/5251
+	TODO: check
+CVE-2013-7107 [CSRF]
+	- icinga <unfixed>
+	NOTE: https://dev.icinga.org/issues/5250
+	TODO: check
+CVE-2013-7106 [several buffer overflows]
+	- icinga <unfixed>
+	NOTE: https://dev.icinga.org/issues/5250
+	TODO: check
 CVE-2013-7083
 	RESERVED
 CVE-2013-7068




More information about the Secure-testing-commits mailing list