[Secure-testing-commits] r24457 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Nov 27 06:06:09 UTC 2013


Author: carnil
Date: 2013-11-27 06:06:09 +0000 (Wed, 27 Nov 2013)
New Revision: 24457

Modified:
   data/CVE/list
Log:
Check versions for CVE-2013-6395 ganglia webfrontend

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-11-27 05:41:06 UTC (rev 24456)
+++ data/CVE/list	2013-11-27 06:06:09 UTC (rev 24457)
@@ -1014,8 +1014,11 @@
 CVE-2013-6395 [XSS]
 	RESERVED
 	- ganglia-web <unfixed> (bug #730507)
+	[squeeze] - ganglia <not-affected> (Vulnerable code not present)
+	[wheezy] - ganglia <no-dsa> (Minor issue)
+	- ganglia 3.6.0-1
+	NOTE: ganglia-web and ganglia are now two separate source packages
 	NOTE: https://github.com/ganglia/ganglia-web/issues/218
-	TODO: check if also older versions affected (note: webinterface in ganglia source package for (old)stable)
 CVE-2013-6394 [static IV used in Percona XtraBackup]
 	RESERVED
 	- percona-xtrabackup <unfixed> (bug #730544)




More information about the Secure-testing-commits mailing list