[Secure-testing-commits] r20954 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Thu Jan 17 17:24:45 UTC 2013


Author: carnil
Date: 2013-01-17 17:24:44 +0000 (Thu, 17 Jan 2013)
New Revision: 20954

Modified:
   data/CVE/list
Log:
add notes on CVE-2013-0178, redis

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-17 17:22:22 UTC (rev 20953)
+++ data/CVE/list	2013-01-17 17:24:44 UTC (rev 20954)
@@ -2851,8 +2851,11 @@
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=895054
 	NOTE: https://code.google.com/p/memcached/issues/detail?id=306
 	NOTE: https://code.google.com/p/memcached/issues/attachmentText?id=306&aid=3060004000&name=0001-Fix-buffer-overrun-when-logging-key-to-delete-in-bin.patch
-CVE-2013-0178
+CVE-2013-0178 [redis 2.4: Insecure temporary flaw use for redis service's vm swap file]
 	RESERVED
+	- redis <unfixed>
+	NOTE: RedHat bugreport mentions 2.4 is affected, but not 2.6
+	TODO: check
 CVE-2013-0177
 	RESERVED
 CVE-2013-0176




More information about the Secure-testing-commits mailing list