[Secure-testing-commits] r26754 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Apr 30 12:56:22 UTC 2014


Author: carnil
Date: 2014-04-30 12:56:22 +0000 (Wed, 30 Apr 2014)
New Revision: 26754

Modified:
   data/CVE/list
Log:
Add CVE-2014-0185/php5, with TODO item

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-04-30 12:49:39 UTC (rev 26753)
+++ data/CVE/list	2014-04-30 12:56:22 UTC (rev 26754)
@@ -7679,8 +7679,11 @@
 	[wheezy] - neutron <not-affected> (Only affects 2013.1 to 2013.2.3, and 2014.1)
 CVE-2014-0186
 	RESERVED
-CVE-2014-0185
+CVE-2014-0185 [privilege escalation due to insecure default config]
 	RESERVED
+	- php5 <unfixed>
+	NOTE: https://bugs.php.net/bug.php?id=67060
+	TODO: check
 CVE-2014-0184
 	RESERVED
 CVE-2014-0183




More information about the Secure-testing-commits mailing list