[Secure-testing-commits] r20847 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Mon Jan 7 21:27:55 UTC 2013


Author: carnil
Date: 2013-01-07 21:27:55 +0000 (Mon, 07 Jan 2013)
New Revision: 20847

Modified:
   data/CVE/list
Log:
CVE asigned for jenkins issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-07 21:14:27 UTC (rev 20846)
+++ data/CVE/list	2013-01-07 21:27:55 UTC (rev 20847)
@@ -52,10 +52,6 @@
 	TODO: check
 CVE-2012-6496 (SQL injection vulnerability in the Active Record component in Ruby on ...)
 	TODO: check
-CVE-2013-XXXX [possible remote code execution]
-	- jenkins <unfixed> (bug #697617)                                                                                                                                      
-	NOTE: https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-01-04
-	NOTE: CVE requested on oss-security list
 CVE-2013-XXXX [Possible symlink race when applying UserOwner]
 	- proftpd-dfsg <unfixed> (bug #697524)
 	NOTE: CVE requested: http://www.openwall.com/lists/oss-security/2013/01/07/1
@@ -1703,8 +1699,9 @@
 	RESERVED
 CVE-2013-0159
 	RESERVED
-CVE-2013-0158
-	RESERVED
+CVE-2013-0158 [possible remote code execution]
+	- jenkins <unfixed> (bug #697617)                                                                                                                                      
+	NOTE: https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2013-01-04
 CVE-2013-0157 [mount discloses information about existence of folders]
 	RESERVED
 	- mount <unfixed> (bug #697464; low)




More information about the Secure-testing-commits mailing list