[Secure-testing-commits] r28222 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Aug 11 22:15:20 UTC 2014


Author: jmm
Date: 2014-08-11 22:15:20 +0000 (Mon, 11 Aug 2014)
New Revision: 28222

Modified:
   data/CVE/list
Log:
mcollective non-issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-11 21:03:15 UTC (rev 28221)
+++ data/CVE/list	2014-08-11 22:15:20 UTC (rev 28222)
@@ -13440,8 +13440,8 @@
 	NOT-FOR-US: RedHat CloudForms Management Engine
 CVE-2014-0175 [default password set at install]
 	RESERVED
-	- mcollective <unfixed>
-	TODO: check
+	- mcollective <unfixed> (unimportant)
+        NOTE: Password rotation is documented in README.Debian
 CVE-2014-0174 (Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG ...)
 	NOT-FOR-US: Cumin
 CVE-2014-0173 (The Jetpack plugin before 1.9 before 1.9.4, 2.0.x before 2.0.9, 2.1.x ...)




More information about the Secure-testing-commits mailing list