[Secure-testing-commits] r23524 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Tue Sep 3 06:28:14 UTC 2013


Author: jmm
Date: 2013-09-03 06:28:14 +0000 (Tue, 03 Sep 2013)
New Revision: 23524

Modified:
   data/CVE/list
Log:
one roundcube issue N/A
filed bug for condor, no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-09-03 05:48:32 UTC (rev 23523)
+++ data/CVE/list	2013-09-03 06:28:14 UTC (rev 23524)
@@ -28,8 +28,7 @@
 	NOTE: introduced by: http://libvirt.org/git/?p=libvirt.git;a=commit;h=0fc89098a68f0f6962de8be4fc03ddd960ffbf08
 	NOTE: Upstream fix: http://libvirt.org/git/?p=libvirt.git;a=commit;h=47b9127e883677a0d60d767030a147450e919a25
 CVE-2013-5646 (Cross-site scripting (XSS) vulnerability in Roundcube webmail 1.0-git ...)
-	- roundcube <undetermined>
-	TODO: check
+	- roundcube <not-affected> (Unclear, 0.9.2 reported not affected, all other issues covered by CVE-2013-5645)
 CVE-2013-5645 (Multiple cross-site scripting (XSS) vulnerabilities in Roundcube ...)
 	- roundcube <unfixed> (bug #721592)
 	NOTE: http://trac.roundcube.net/changeset/93b0a30c1c8aa29d862b587b31e52bcc344b8d16/github
@@ -3061,8 +3060,8 @@
 	- nas 1.9.3-6 (bug #720287)
 CVE-2013-4255 [condor_startd DoS when parsing policy definition that evaluates to ERROR or UNDEFINED]
 	RESERVED
-	- condor <unfixed>
-	TODO: check versions and report to BTS
+	- condor <unfixed> (bug #721693)
+	[wheezy] - condor <no-dsa> (Minor issue)
 CVE-2013-4254 (The validate_event function in arch/arm/kernel/perf_event.c in the ...)
 	- linux <unfixed>
 	- linux-2.6 <not-affected> (No perf support on arm)




More information about the Secure-testing-commits mailing list