[Secure-testing-commits] r20903 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Sat Jan 12 08:57:03 UTC 2013


Author: carnil
Date: 2013-01-12 08:57:02 +0000 (Sat, 12 Jan 2013)
New Revision: 20903

Modified:
   data/CVE/list
Log:
add axis2c issue, CVE-2012-6107

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-12 08:48:55 UTC (rev 20902)
+++ data/CVE/list	2013-01-12 08:57:02 UTC (rev 20903)
@@ -3223,8 +3223,11 @@
 	RESERVED
 CVE-2012-6108
 	RESERVED
-CVE-2012-6107
+CVE-2012-6107 [Does not verify that the server hostname matches a domain name in the subject's CN or subjectAltName field of the x.509 certificate]
 	RESERVED
+	- axis2c <unfixed>
+	NOTE: https://issues.apache.org/jira/browse/AXIS2C-1619
+	TODO: check
 CVE-2012-6106
 	RESERVED
 CVE-2012-6105




More information about the Secure-testing-commits mailing list