[Secure-testing-commits] r28139 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Aug 8 05:02:07 UTC 2014


Author: carnil
Date: 2014-08-08 05:02:06 +0000 (Fri, 08 Aug 2014)
New Revision: 28139

Modified:
   data/CVE/list
Log:
Add new krb5 issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-08 04:59:04 UTC (rev 28138)
+++ data/CVE/list	2014-08-08 05:02:06 UTC (rev 28139)
@@ -1981,8 +1981,10 @@
 	NOT-FOR-US: Citrix NetScaler Application Delivery Controller
 CVE-2014-4346 (Cross-site scripting (XSS) vulnerability in administration user ...)
 	NOT-FOR-US: Citrix NetScaler Application Delivery Controller
-CVE-2014-4345
+CVE-2014-4345 [buffer overrun in kadmind]
 	RESERVED
+	- krb5 <unfixed> (bug #757416)
+	NOTE: https://github.com/krb5/krb5/commit/81c332e29f10887c6b9deb065f81ba259f4c7e03
 CVE-2014-4344 [NULL dereference in GSSAPI servers]
 	RESERVED
 	- krb5 1.12.1+dfsg-5 (bug #755521)




More information about the Secure-testing-commits mailing list