[Secure-testing-commits] r20953 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Thu Jan 17 17:22:22 UTC 2013


Author: carnil
Date: 2013-01-17 17:22:22 +0000 (Thu, 17 Jan 2013)
New Revision: 20953

Modified:
   data/CVE/list
Log:
CVE-2012-6108: hplip, add Todo item: Debian version affected?

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-17 17:19:25 UTC (rev 20952)
+++ data/CVE/list	2013-01-17 17:22:22 UTC (rev 20953)
@@ -3474,8 +3474,10 @@
 	RESERVED
 	- ruby-rack <unfixed>
 	TODO: check
-CVE-2012-6108
+CVE-2012-6108 [default permissions for /var/log/hp are too open]
 	RESERVED
+	- hplip <unfixed>
+	TODO: check, hplib in Debian affected?
 CVE-2012-6107 [Does not verify that the server hostname matches a domain name in the subject's CN or subjectAltName field of the x.509 certificate]
 	RESERVED
 	- axis2c <unfixed> (bug #697974)




More information about the Secure-testing-commits mailing list