[Secure-testing-commits] r30834 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Dec 18 20:26:05 UTC 2014


Author: carnil
Date: 2014-12-18 20:26:05 +0000 (Thu, 18 Dec 2014)
New Revision: 30834

Modified:
   data/CVE/list
Log:
Mark rabbitmq-server issue as not-affectd for wheezy and squeeze

wheezy and squeeze version di not contain this access ontrol mechanism,
which was introduced in 3.3.0 upstream.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-12-18 20:23:17 UTC (rev 30833)
+++ data/CVE/list	2014-12-18 20:26:05 UTC (rev 30834)
@@ -39,6 +39,8 @@
 CVE-2014-XXXX [insufficient 'X-Forwarded-For' header validation]
 	- rabbitmq-server 3.4.1-1 (bug #773134)
 	[jessie] - rabbitmq-server 3.3.5-1.1
+	[wheezy] - rabbitmq-server <not-affected> (does not have this access control mechanism)
+	[squeeze] - rabbitmq-server <not-affected> (does not have this access control mechanism)
 	NOTE: http://hg.rabbitmq.com/rabbitmq-management/rev/c3c41177a11a
 	NOTE: http://hg.rabbitmq.com/rabbitmq-management/rev/35e916df027d
 	NOTE: http://www.rabbitmq.com/release-notes/README-3.4.0.txt




More information about the Secure-testing-commits mailing list