[Secure-testing-commits] r21430 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Tue Feb 26 10:19:39 UTC 2013


Author: carnil
Date: 2013-02-26 10:19:39 +0000 (Tue, 26 Feb 2013)
New Revision: 21430

Modified:
   data/CVE/list
Log:
Add two CVEs for libxml2

Needs checking and report to the BTS


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-02-26 09:14:21 UTC (rev 21429)
+++ data/CVE/list	2013-02-26 10:19:39 UTC (rev 21430)
@@ -4601,10 +4601,14 @@
 	RESERVED
 CVE-2013-0340
 	RESERVED
-CVE-2013-0339
+CVE-2013-0339 [CPU consumption DoS when performing string substitutions during external entities expansion]
 	RESERVED
-CVE-2013-0338
+	- libxml2 <unfixed>
+	TODO: check and report
+CVE-2013-0338 [CPU consumption DoS when performing string substitutions during entities expansion]
 	RESERVED
+	- libxml2 <unfixed>
+	TODO: check and report
 CVE-2013-0337 [Directory /var/log/nginx is world readable]
 	RESERVED
 	- nginx <unfixed> (low; bug #701112)




More information about the Secure-testing-commits mailing list