[Secure-testing-commits] r26537 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Apr 14 10:33:10 UTC 2014


Author: jmm
Date: 2014-04-14 10:33:10 +0000 (Mon, 14 Apr 2014)
New Revision: 26537

Modified:
   data/CVE/list
Log:
cifs-utils unimportant


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-04-14 07:18:30 UTC (rev 26536)
+++ data/CVE/list	2014-04-14 10:33:10 UTC (rev 26537)
@@ -9,11 +9,10 @@
 	- linux-2.6 <removed>
 	NOTE: https://lkml.org/lkml/2014/4/10/736
 CVE-2014-2830 [cifs-utils: pam module pam_cifscreds stack overflow]
-	- cifs-utils <unfixed>
+	- cifs-utils <unfixed> (unimportant)
 	[squeeze] - cifs-utils <not-affected> (Vulnerable code not present)
 	[wheezy] - cifs-utils <not-affected> (pam_cifscreds introduced in 6.3)
-	NOTE: cifscreds PAM module seems not build in unstable
-	TODO: double check
+	NOTE: cifscreds PAM not built in unstable
 CVE-2014-2828 [Keystone DoS through V3 API authentication chaining]
 	- keystone <unfixed>
 	NOTE: https://launchpad.net/bugs/1300274




More information about the Secure-testing-commits mailing list