[Secure-testing-commits] r26596 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Apr 17 11:19:06 UTC 2014


Author: jmm
Date: 2014-04-17 11:19:06 +0000 (Thu, 17 Apr 2014)
New Revision: 26596

Modified:
   data/CVE/list
Log:
json-c fixed
RH NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-04-17 09:56:51 UTC (rev 26595)
+++ data/CVE/list	2014-04-17 11:19:06 UTC (rev 26596)
@@ -7456,8 +7456,10 @@
 	NOTE: http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-44082
 CVE-2014-0121
 	RESERVED
+	NOT-FOR-US: hawtio-karaf-terminal
 CVE-2014-0120
 	RESERVED
+	NOT-FOR-US: hawtio-karaf-terminal
 CVE-2014-0119
 	RESERVED
 CVE-2014-0118
@@ -9396,11 +9398,11 @@
 	- jenkins <not-affected> (Affected plugins are not shipped in Debian, bug #730457)
 CVE-2013-6371 [hash collision DoS]
 	RESERVED
-	- json-c <unfixed> (bug #744008)
+	- json-c 0.11-4 (bug #744008)
 	NOTE: https://github.com/json-c/json-c/commit/64e36901a0614bf64a19bc3396469c66dcd0b015
 CVE-2013-6370 [buffer overflow if size_t is larger than int]
 	RESERVED
-	- json-c <unfixed> (bug #744008)
+	- json-c 0.11-4 (bug #744008)
 	NOTE: https://github.com/json-c/json-c/commit/64e36901a0614bf64a19bc3396469c66dcd0b015
 CVE-2013-6369 (Stack-based buffer overflow in the jbg_dec_in function in ...)
 	{DSA-2900-1}
@@ -13168,7 +13170,7 @@
 CVE-2013-4769
 	RESERVED
 CVE-2013-4768 (The web services APIs in Eucalyptus 2.0 through 3.4.1 allow remote ...)
-	TODO: check
+	- eucalyptus <removed>
 CVE-2013-4767 (Unspecified vulnerability in Eucalyptus before 3.3.2 has unknown ...)
 	- eucalyptus <removed>
 CVE-2013-4766 (The gather log service in Eucalyptus before 3.3.1 allows remote ...)




More information about the Secure-testing-commits mailing list