[Secure-testing-commits] r20864 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Wed Jan 9 08:46:28 UTC 2013


Author: jmm
Date: 2013-01-09 08:46:28 +0000 (Wed, 09 Jan 2013)
New Revision: 20864

Modified:
   data/CVE/list
Log:
fix source package names for other rails issue
cronie only in experimental


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-09 08:05:08 UTC (rev 20863)
+++ data/CVE/list	2013-01-09 08:46:28 UTC (rev 20864)
@@ -1818,7 +1818,10 @@
 	NOTE: CVE request http://www.openwall.com/lists/oss-security/2013/01/06/1
 CVE-2013-0156
 	RESERVED
-	- rails <unfixed> (bug #697722; high)
+	- rails 2.3.14.1 (bug #697722; high)
+	- ruby-actionpack-3.2 <unfixed>
+	- ruby-actionpack-2.3 <unfixed>
+	NOTE: Starting with 2.3.14.1 rails is a transition package
 	NOTE: http://www.insinuator.net/2013/01/rails-yaml/
 	NOTE: http://www.openwall.com/lists/oss-security/2013/01/08/14
 CVE-2013-0155
@@ -2397,6 +2400,7 @@
 CVE-2012-6097 [cronie fd leak]
 	RESERVED
 	- cronie <unfixed> (low)
+	NOTE: Only present in experimental
 	NOTE: https://bugzilla.novell.com/show_bug.cgi?id=786096
 CVE-2012-6096
 	RESERVED




More information about the Secure-testing-commits mailing list