[Secure-testing-commits] r24821 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Dec 19 07:11:18 UTC 2013


Author: jmm
Date: 2013-12-19 07:11:18 +0000 (Thu, 19 Dec 2013)
New Revision: 24821

Modified:
   data/CVE/list
Log:
filed bug for wbem
wireshark updates


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-12-19 06:37:36 UTC (rev 24820)
+++ data/CVE/list	2013-12-19 07:11:18 UTC (rev 24821)
@@ -10,15 +10,17 @@
 	NOTE: https://rt.cpan.org/Public/Bug/Display.html?id=91450
 CVE-2013-7114
 	- wireshark 1.10.4-1
+	[squeeze] - wireshark <not-affected> (Vulnerable code not present)
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2013-68.html
 CVE-2013-7113
 	- wireshark 1.10.4-1
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2013-67.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9488
 CVE-2013-7112
-	- wireshark 1.10.4-1
+	- wireshark 1.10.4-1 (unimportant)
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2013-66.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=9388
+	NOTE: Not suitable for code injection
 CVE-2013-7111
 	NOT-FOR-US: Bio Basespace SDK Ruby Gem
 CVE-2013-7110
@@ -2335,7 +2337,7 @@
 	RESERVED
 CVE-2013-6444 [failure to check certificate hostname]
 	RESERVED
-	- pywbem <unfixed>
+	- pywbem <unfixed> (bug #732594)
 CVE-2013-6443
 	RESERVED
 CVE-2013-6442
@@ -2416,7 +2418,7 @@
 	NOTE: https://launchpad.net/bugs/1235450
 CVE-2013-6418 [TOCTOU vulnerability in certificate validation]
 	RESERVED
-	- pywbem <unfixed>
+	- pywbem <unfixed> (low; bug #732594)
 CVE-2013-6417 (actionpack/lib/action_dispatch/http/request.rb in Ruby on Rails before ...)
 	- rails-4.0 4.0.2+dfsg-1 (bug #731290)
 	- ruby-actionpack-3.2 3.2.16-1 (bug #731288)




More information about the Secure-testing-commits mailing list