[Secure-testing-commits] r30553 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Dec 5 04:39:07 UTC 2014


Author: carnil
Date: 2014-12-05 04:39:07 +0000 (Fri, 05 Dec 2014)
New Revision: 30553

Modified:
   data/CVE/list
Log:
CVEs assigned for unrtf

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-12-05 04:30:20 UTC (rev 30552)
+++ data/CVE/list	2014-12-05 04:39:07 UTC (rev 30553)
@@ -121,10 +121,14 @@
 	RESERVED
 CVE-2015-0301
 	RESERVED
-CVE-2014-XXXX [unrtf: out-of-bounds memory access]
+CVE-2014-9275 [crashes]
 	- unrtf <unfixed>
 	NOTE: https://lists.gnu.org/archive/html/bug-unrtf/2014-11/msg00000.html
-	TODO: check
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1170233
+CVE-2014-9274 [out-of-bounds memory access]
+	- unrtf <unfixed>
+	NOTE: https://lists.gnu.org/archive/html/bug-unrtf/2014-11/msg00001.html
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1170233
 CVE-2014-9278 [~/.k5users unexpectedly grants remote login]
 	- openssh <not-affected> (patch not applied to Debian)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1169843




More information about the Secure-testing-commits mailing list