[Secure-testing-commits] r24865 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Dec 21 20:12:18 UTC 2013


Author: carnil
Date: 2013-12-21 20:12:18 +0000 (Sat, 21 Dec 2013)
New Revision: 24865

Modified:
   data/CVE/list
Log:
Update entry for CVE-2013-6836/gnumeric

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-12-21 20:05:10 UTC (rev 24864)
+++ data/CVE/list	2013-12-21 20:12:18 UTC (rev 24865)
@@ -1729,9 +1729,9 @@
 CVE-2013-6837 (Cross-site scripting (XSS) vulnerability in the setTimeout function in ...)
 	TODO: check
 CVE-2013-6836 (Heap-based buffer overflow in the ms_escher_get_data function in ...)
-	- gnumeric <unfixed>
+	- gnumeric 1.12.9-1
 	NOTE: https://projects.gnome.org/gnumeric/announcements/1.12/gnumeric-1.12.9.shtml
-	TODO: check
+	NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=712772
 CVE-2013-6835
 	RESERVED
 CVE-2013-6834 (The ql_eioctl function in sys/dev/qlxgbe/ql_ioctl.c in the kernel in ...)




More information about the Secure-testing-commits mailing list