[Secure-testing-commits] r20888 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Fri Jan 11 11:47:55 UTC 2013


Author: carnil
Date: 2013-01-11 11:47:55 +0000 (Fri, 11 Jan 2013)
New Revision: 20888

Modified:
   data/CVE/list
Log:
fix ruby-extlib entry

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-11 09:14:26 UTC (rev 20887)
+++ data/CVE/list	2013-01-11 11:47:55 UTC (rev 20888)
@@ -2008,6 +2008,8 @@
 	RESERVED
 CVE-2013-0175
 	RESERVED
+	- ruby-extlib <unfixed> (bug #697895)
+	NOTE: fixed in https://rubygems.org/gems/multi_xml/versions/0.5.2
 CVE-2013-0174
 	RESERVED
 CVE-2013-0173
@@ -2060,7 +2062,6 @@
 	- rails 2.3.14.1 (bug #697722; high)
 	- ruby-activesupport-2.3 2.3.14-5 (bug #697789)
 	- ruby-activesupport-3.2 3.2.6-5 (bug #697790)
-	- ruby-extlib <unfixed> (bug #697895) 
 	NOTE: Starting with 2.3.14.1 rails is a transition package
 	NOTE: http://www.insinuator.net/2013/01/rails-yaml/
 	NOTE: http://www.openwall.com/lists/oss-security/2013/01/08/14




More information about the Secure-testing-commits mailing list