[Secure-testing-commits] r21205 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Sat Feb 9 08:46:46 UTC 2013


Author: carnil
Date: 2013-02-09 08:46:45 +0000 (Sat, 09 Feb 2013)
New Revision: 21205

Modified:
   data/CVE/list
Log:
CVE-2013-0263: ruby-rack

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-02-09 08:42:56 UTC (rev 21204)
+++ data/CVE/list	2013-02-09 08:46:45 UTC (rev 21205)
@@ -3404,8 +3404,11 @@
 CVE-2013-0264
 	RESERVED
 	NOT-FOR-US: Cumin
-CVE-2013-0263
+CVE-2013-0263 [Timing attack in cookie sessions]
 	RESERVED
+	- ruby-rack <unfixed>
+	NOTE: https://bugzilla.novell.com/show_bug.cgi?id=802794
+	TODO: check
 CVE-2013-0262 [Path sanitization information disclosure]
 	RESERVED
 	- ruby-rack <unfixed>




More information about the Secure-testing-commits mailing list