[Secure-testing-commits] r21495 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Sun Mar 3 16:38:09 UTC 2013


Author: carnil
Date: 2013-03-03 16:38:08 +0000 (Sun, 03 Mar 2013)
New Revision: 21495

Modified:
   data/CVE/list
Log:
update two more YAML parameter parsing vulnerability, one NFU one itp

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-03-03 16:31:27 UTC (rev 21494)
+++ data/CVE/list	2013-03-03 16:38:08 UTC (rev 21495)
@@ -994,10 +994,12 @@
 	RESERVED
 	- ruby-extlib 0.9.15-3 (bug #697895)
 	- libextlib-ruby <removed> (bug #697895)
-CVE-2013-1801
+CVE-2013-1801 [YAML parameter parsing vulnerability]
 	RESERVED
-CVE-2013-1800
+	NOT-FOR-US: httparty Ruby gem
+CVE-2013-1800 [YAML parameter parsing vulnerability]
 	RESERVED
+	- ruby-crack <itp> (bug #623900)
 CVE-2013-1799
 	RESERVED
 CVE-2013-1798




More information about the Secure-testing-commits mailing list