[Secure-testing-commits] r24025 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Wed Oct 16 11:03:17 UTC 2013


Author: jmm
Date: 2013-10-16 11:03:17 +0000 (Wed, 16 Oct 2013)
New Revision: 24025

Modified:
   data/CVE/list
Log:
more openjkd triage


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-16 10:41:39 UTC (rev 24024)
+++ data/CVE/list	2013-10-16 11:03:17 UTC (rev 24025)
@@ -429,6 +429,8 @@
 	RESERVED
 CVE-2013-5852
 	RESERVED
+	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
+	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 CVE-2013-5851
 	RESERVED
 CVE-2013-5850
@@ -461,6 +463,8 @@
 	RESERVED
 CVE-2013-5838
 	RESERVED
+	- openjdk-6 <not-affected> (Only affects Java 7)
+	- openjdk-7 <unfixed>
 CVE-2013-5837
 	RESERVED
 CVE-2013-5836
@@ -491,6 +495,8 @@
 	RESERVED
 CVE-2013-5825
 	RESERVED
+	- openjdk-6 <unfixed>
+	- openjdk-7 <unfixed>
 CVE-2013-5824
 	RESERVED
 	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
@@ -523,6 +529,8 @@
 	RESERVED
 CVE-2013-5812
 	RESERVED
+	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
+	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 CVE-2013-5811
 	RESERVED
 CVE-2013-5810
@@ -550,10 +558,15 @@
 	- openjdk-7 <not-affected> (Specific to MacOS X)
 CVE-2013-5804
 	RESERVED
+	- openjdk-6 <unfixed> (unimportant)
+	- openjdk-7 <unfixed> (unimportant)
+	NOTE: Javadoc comments can contain arbitrary HTML
 CVE-2013-5803
 	RESERVED
 CVE-2013-5802
 	RESERVED
+	- openjdk-6 <unfixed>
+	- openjdk-7 <unfixed>
 CVE-2013-5801
 	RESERVED
 CVE-2013-5800
@@ -616,12 +629,16 @@
 	RESERVED
 CVE-2013-5778
 	RESERVED
+	- openjdk-6 <unfixed>
+	- openjdk-7 <unfixed>
 CVE-2013-5777
 	RESERVED
 	- openjdk-6 <not-affected> (JavaFX not part of OpenJDK)
 	- openjdk-7 <not-affected> (JavaFX not part of OpenJDK)
 CVE-2013-5776
 	RESERVED
+	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
+	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 CVE-2013-5775
 	RESERVED
 	- openjdk-6 <not-affected> (JavaFX not part of OpenJDK)
@@ -5006,7 +5023,8 @@
 CVE-2013-4003 (Multiple cross-site scripting (XSS) vulnerabilities in IBM TRIRIGA ...)
 	NOT-FOR-US: IBM TRIRIGA
 CVE-2013-4002 (Unspecified vulnerability in the Java Runtime Environment (JRE) in IBM ...)
-	NOT-FOR-US: IBM JDK
+	- openjdk-6 <unfixed>
+	- openjdk-7 <unfixed>
 CVE-2013-4001
 	RESERVED
 CVE-2013-4000
@@ -5356,6 +5374,8 @@
 	RESERVED
 CVE-2013-3829
 	RESERVED
+	- openjdk-6 <unfixed>
+	- openjdk-7 <unfixed>
 CVE-2013-3828
 	RESERVED
 CVE-2013-3827




More information about the Secure-testing-commits mailing list