[Secure-testing-commits] r23692 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Tue Sep 17 05:19:12 UTC 2013


Author: carnil
Date: 2013-09-17 05:19:12 +0000 (Tue, 17 Sep 2013)
New Revision: 23692

Modified:
   data/CVE/list
Log:
Add fixed version for CVE-2013-2184/movabletype-opensource

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-09-17 05:12:47 UTC (rev 23691)
+++ data/CVE/list	2013-09-17 05:19:12 UTC (rev 23692)
@@ -8579,9 +8579,9 @@
 	NOT-FOR-US: Red Hat JBoss Enterprise Application Platform
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=974813
 	NOTE: http://www.openwall.com/lists/oss-security/2013/09/05/4
-CVE-2013-2184
+CVE-2013-2184 [unsafe use of Storable::thaw]
 	RESERVED
-	- movabletype-opensource <unfixed> (bug #712602)
+	- movabletype-opensource 5.2.7+dfsg-1 (bug #712602)
 	[squeeze] - movabletype-opensource <no-dsa> (Minor issue)
 	[wheezy] - movabletype-opensource <no-dsa> (Minor issue)
 CVE-2013-2183




More information about the Secure-testing-commits mailing list