[Secure-testing-commits] r21397 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Sat Feb 23 11:18:24 UTC 2013


Author: carnil
Date: 2013-02-23 11:18:23 +0000 (Sat, 23 Feb 2013)
New Revision: 21397

Modified:
   data/CVE/list
Log:
add information about corosync, CVE-2013-0250

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-02-23 10:34:43 UTC (rev 21396)
+++ data/CVE/list	2013-02-23 11:18:23 UTC (rev 21397)
@@ -4898,8 +4898,8 @@
 	[squeeze] - latd <no-dsa> (Minor issue)
 CVE-2013-0250 [corosync: Remote DoS due improper HMAC initialization]
 	RESERVED
-	- corosync <unfixed> (bug #699615)
-	TODO: check
+	- corosync <not-affected> (Introduced in v1.99.8-2-ge925f42; bug #699615)
+	NOTE: https://github.com/corosync/corosync/commit/4378915a33ab7fbbb5874f79dd7cd71b014ef44e#L0R407
 	NOTE: http://www.openwall.com/lists/oss-security/2013/02/01/1
 CVE-2013-0249
 	RESERVED




More information about the Secure-testing-commits mailing list