[Secure-testing-commits] r26661 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Apr 22 07:26:27 UTC 2014


Author: jmm
Date: 2014-04-22 07:26:27 +0000 (Tue, 22 Apr 2014)
New Revision: 26661

Modified:
   data/CVE/list
Log:
llvm-toolchain-3.3 and llvm-toolchain-3.4 are affected
fix version number for linux


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-04-22 07:05:03 UTC (rev 26660)
+++ data/CVE/list	2014-04-22 07:26:27 UTC (rev 26661)
@@ -86,7 +86,8 @@
 	NOTE: http://sourceforge.net/p/libmms/code/ci/03bcfccc22919c72742b7338d02859962861e0e8
 CVE-2014-2893 [scan-build: insecure use of /tmp]
 	- llvm-toolchain-snapshot <unfixed> (bug #744817)
-	TODO: check clang 3.3 and 3.4
+	- llvm-toolchain-3.3 <unfixed>
+	- llvm-toolchain-3.4 <unfixed>
 CVE-2014-2854
 	RESERVED
 CVE-2014-2853
@@ -359,7 +360,7 @@
 CVE-2011-5277 (Multiple SQL injection vulnerabilities in signature.php in the ...)
 	NOT-FOR-US: MyBB plugin Advanced Forum Signatures
 CVE-2014-2889 [arch: x86: net: bpf_jit: an off-by-one bug in x86_64 cond jump target]
-	- linux 3.2.20-1
+	- linux 3.2.1-1
 	- linux-2.6 3.2.1-1
 	[squeeze] - linux-2.6 <not-affected> (Introduced in 3.0)
 	NOTE: introduced by https://git.kernel.org/linus/0a14842f5a3c0e88a1e59fac5c3025db39721f74
@@ -7333,7 +7334,6 @@
 	RESERVED
 	- qemu <unfixed>
 	- qemu-kvm <removed>
-	TODO: check
 CVE-2014-0181
 	RESERVED
 CVE-2014-0180




More information about the Secure-testing-commits mailing list