[Secure-testing-commits] r23032 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Mon Jul 22 06:36:47 UTC 2013


Author: jmm
Date: 2013-07-22 06:36:47 +0000 (Mon, 22 Jul 2013)
New Revision: 23032

Modified:
   data/CVE/list
Log:
struts not affected
new eglibc issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-07-22 05:41:33 UTC (rev 23031)
+++ data/CVE/list	2013-07-22 06:36:47 UTC (rev 23032)
@@ -6060,16 +6060,14 @@
 CVE-2013-2252
 	RESERVED
 CVE-2013-2251 (Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute ...)
-	- libstruts1.2-java <undetermined>
-	TODO: check (only 2.x.y affected?)
+	- libstruts1.2-java <not-affected> (Only affect 2.x)
 CVE-2013-2250
 	RESERVED
 	NOT-FOR-US: Apache OFBiz
 CVE-2013-2249
 	RESERVED
 CVE-2013-2248 (Multiple open redirect vulnerabilities in Apache Struts 2.0.0 through ...)
-	- libstruts1.2-java <undetermined>
-	TODO: check (only 2.x.y affected?)
+	- libstruts1.2-java <not-affected> (Only affect 2.x)
 CVE-2013-2247 [Access bypass]
 	RESERVED
 	NOT-FOR-US: Fast Permissions Administration Drupal contributed module
@@ -6225,6 +6223,7 @@
 	[wheezy] - tpp <no-dsa> (Minor issue)
 CVE-2013-2207
 	RESERVED
+	- eglibc <unfixed> (low)
 CVE-2013-2206 (The sctp_sf_do_5_2_4_dupcook function in net/sctp/sm_statefuns.c in ...)
 	- linux-2.6 <removed>
 	- linux 3.9.4-1




More information about the Secure-testing-commits mailing list