[Secure-testing-commits] r22913 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Thu Jul 11 18:31:25 UTC 2013


Author: fgeek-guest
Date: 2013-07-11 18:31:25 +0000 (Thu, 11 Jul 2013)
New Revision: 22913

Modified:
   data/CVE/list
Log:
CVE-2013-4116

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-07-11 18:22:27 UTC (rev 22912)
+++ data/CVE/list	2013-07-11 18:31:25 UTC (rev 22913)
@@ -1388,8 +1388,12 @@
 CVE-2013-4117
 	RESERVED
 	NOT-FOR-US: WordPress plugin category-grid-view-gallery
-CVE-2013-4116
+CVE-2013-4116 [npm: predictable temporary filenames when unpacking tarballs]
 	RESERVED
+	- npm <unfixed> (bug #715325)
+	NOTE: http://openwall.com/lists/oss-security/2013/07/10/17
+	NOTE: Upstream fix https://github.com/isaacs/npm/commit/f4d31693
+	NOTE: https://github.com/isaacs/npm/issues/3635
 CVE-2013-4115 [SQUID-2013:2: buffer overflow in HTTP request handling]
 	RESERVED
 	- squid <unfixed>




More information about the Secure-testing-commits mailing list