[Secure-testing-commits] r23036 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Mon Jul 22 13:25:19 UTC 2013


Author: jmm
Date: 2013-07-22 13:25:19 +0000 (Mon, 22 Jul 2013)
New Revision: 23036

Modified:
   data/CVE/list
Log:
yardradius no-dsa
new lcms issue (apparently harmless)


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-07-22 09:09:10 UTC (rev 23035)
+++ data/CVE/list	2013-07-22 13:25:19 UTC (rev 23036)
@@ -1491,6 +1491,8 @@
 	RESERVED
 CVE-2013-4160
 	RESERVED
+	- lcms <unfixed>
+	TODO: The version in Debian is very old, most affected code apparently not present, needs to be checked
 CVE-2013-4159
 	RESERVED
 CVE-2013-4158
@@ -1528,7 +1530,9 @@
 	RESERVED
 CVE-2013-4147 [Format String Vulnerabilities]
 	RESERVED
-	- yardradius <unfixed> (bug #714612)
+	- yardradius <unfixed> (low; bug #714612)
+	[squeeze] - yardradius <no-dsa> (Minor issue)
+	[wheezy] - yardradius <no-dsa> (Minor issue)
 CVE-2013-4146
 	RESERVED
 CVE-2013-4145




More information about the Secure-testing-commits mailing list