[Secure-testing-commits] r24087 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Mon Oct 21 03:31:10 UTC 2013


Author: carnil
Date: 2013-10-21 03:31:10 +0000 (Mon, 21 Oct 2013)
New Revision: 24087

Modified:
   data/CVE/list
Log:
Add fixed version for CVE-2013-1739/nss

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-20 21:55:02 UTC (rev 24086)
+++ data/CVE/list	2013-10-21 03:31:10 UTC (rev 24087)
@@ -11164,8 +11164,8 @@
 	RESERVED
 CVE-2013-1739 [nss "uninitialized data read in the event of a decryption failure"]
 	RESERVED
-	- nss <unfixed> (bug #726473)
-	TODO: check
+	- nss 2:3.15.2-1 (bug #726473)
+	[squeeze] - nss <not-affected> (Introduced in 3.14.3)
 	NOTE: https://developer.mozilla.org/en-US/docs/NSS/NSS_3.15.2_release_notes
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1012656
 CVE-2013-1738 (Use-after-free vulnerability in the JS_GetGlobalForScopeChain function ...)




More information about the Secure-testing-commits mailing list