[Secure-testing-commits] r24158 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Fri Oct 25 04:13:48 UTC 2013


Author: carnil
Date: 2013-10-25 04:13:48 +0000 (Fri, 25 Oct 2013)
New Revision: 24158

Modified:
   data/CVE/list
Log:
Add CVE-2013-4466 for gnutls

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-25 03:54:16 UTC (rev 24157)
+++ data/CVE/list	2013-10-25 04:13:48 UTC (rev 24158)
@@ -3917,8 +3917,12 @@
 	RESERVED
 CVE-2013-4467
 	RESERVED
-CVE-2013-4466
+CVE-2013-4466 [gnutls/libdane buffer overflow]
 	RESERVED
+	- gnutls26 <not-affected> (only 3.1.x and 3.2.x)
+	- gnutls28 <unfixed>
+	NOTE: http://www.gnutls.org/security.html#GNUTLS-SA-2013-3
+	NOTE: Upstream commit for 3.2.x: https://gitorious.org/gnutls/gnutls/commit/ed51e5e53cfbab3103d6b7b85b7ba4515e4f30c3
 CVE-2013-4465
 	RESERVED
 CVE-2013-4464




More information about the Secure-testing-commits mailing list