[Secure-testing-commits] r24329 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Nov 8 07:34:14 UTC 2013


Author: jmm
Date: 2013-11-08 07:34:14 +0000 (Fri, 08 Nov 2013)
New Revision: 24329

Modified:
   data/CVE/list
Log:
new samba issue (no treating it as public, visible in the RH bugzilla and mentioned
on samba-technical)
libav update


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-11-08 06:55:13 UTC (rev 24328)
+++ data/CVE/list	2013-11-08 07:34:14 UTC (rev 24329)
@@ -4849,8 +4849,13 @@
 	NOTE: https://bugs.launchpad.net/keystone/+bug/1242855
 CVE-2013-4476
 	RESERVED
-CVE-2013-4475
+CVE-2013-4475 [no ACL checks for alternate data streams in Samba]
 	RESERVED
+	- samba <unfixed> (low)
+	[wheezy] - samba <no-dsa> (Minor issue)
+	[squeeze] - samba <no-dsa> (Minor issue)
+	- samba4 <removed> (low)
+	[wheezy] - samba4 <no-dsa> (Minor issue)
 CVE-2013-4474 [User controlled format string]
 	RESERVED
 	- poppler <unfixed>
@@ -14926,7 +14931,9 @@
 	RESERVED
 	- ffmpeg <removed>
 	- libav 6:9.10-1
-	NOTE: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=f18c873ab5ee3c78d00fdcc2582b39c133faecb4
+	NOTE: ffmpeg commit: http://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=f18c873ab5ee3c78d00fdcc2582b39c133faecb4
+	NOTE: libav commit: http://git.libav.org/?p=libav.git;a=commitdiff;h=12576afe206d35231ccd61f9033c5fdab6a11e08
+	NOTE: Fixed in 0.8.9
 CVE-2013-0843 (content/renderer/media/webrtc_audio_renderer.cc in Google Chrome ...)
 	- chromium-browser <not-affected> (MacOS-specific)
 	[squeeze] - chromium-browser <end-of-life>




More information about the Secure-testing-commits mailing list