[Secure-testing-commits] r20978 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Sat Jan 19 11:56:39 UTC 2013


Author: fgeek-guest
Date: 2013-01-19 11:56:39 +0000 (Sat, 19 Jan 2013)
New Revision: 20978

Modified:
   data/CVE/list
Log:
CVE-2013-0198 dnsmasq

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-19 11:20:53 UTC (rev 20977)
+++ data/CVE/list	2013-01-19 11:56:39 UTC (rev 20978)
@@ -2864,8 +2864,10 @@
 	RESERVED
 CVE-2013-0199
 	RESERVED
-CVE-2013-0198
+CVE-2013-0198 [dnsmasq: Incomplete fix for the CVE-2012-3411 issue]
 	RESERVED
+	TODO: check
+	NOTE: CVE request http://www.openwall.com/lists/oss-security/2013/01/18/2
 CVE-2013-0197 [XSS vulnerability with match_type filter]
 	RESERVED
 	- mantis <unfixed> (bug #698481)
@@ -10998,6 +11000,7 @@
 	- dnsmasq 2.63-1 (low; bug #683372)
 	[wheezy] - dnsmasq <no-dsa> (Minor issue)
 	[squeeze] - dnsmasq <no-dsa> (Minor issue)
+	NOTE: Please see CVE-2013-0198
 CVE-2012-3410 (Stack-based buffer overflow in lib/sh/eaccess.c in GNU Bash before 4.2 ...)
 	- bash 4.2-4 (low)
 	[squeeze] - bash <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list