[Secure-testing-commits] r28466 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Aug 26 04:33:43 UTC 2014


Author: carnil
Date: 2014-08-26 04:33:42 +0000 (Tue, 26 Aug 2014)
New Revision: 28466

Modified:
   data/CVE/list
Log:
Add fixed version for two pam CVEs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-25 22:11:34 UTC (rev 28465)
+++ data/CVE/list	2014-08-26 04:33:42 UTC (rev 28466)
@@ -7023,7 +7023,7 @@
 CVE-2014-2584
 	RESERVED
 CVE-2014-2583 (Multiple directory traversal vulnerabilities in pam_timestamp.c in the ...)
-	- pam <unfixed> (low; bug #757555)
+	- pam 1.1.8-3.1 (low; bug #757555)
 	[wheezy] - pam <no-dsa> (Minor issue)
 	[squeeze] - pam <no-dsa> (Minor issue)
 	NOTE: Fix: https://git.fedorahosted.org/cgit/linux-pam.git/commit/?id=Linux-PAM-1_1_8-32-g9dcead8
@@ -13302,7 +13302,7 @@
 CVE-2014-0326 (The Pilot Below Deck Equipment (BDE) and OpenPort implementations on ...)
 	NOT-FOR-US: Pilot Below Deck Equipment and OpenPort implementations on Iridium satellite terminals
 CVE-2013-7041 (The pam_userdb module for Pam uses a case-insensitive method to ...)
-	- pam <unfixed> (low; bug #731368)
+	- pam 1.1.8-3.1 (low; bug #731368)
 	[squeeze] - pam <no-dsa> (Minor issue)
 	[wheezy] - pam <no-dsa> (Minor issue)
 CVE-2013-7040 (Python 2.7 before 3.4 only uses the last eight bits of the prefix to ...)




More information about the Secure-testing-commits mailing list