[Secure-testing-commits] r30899 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Dec 22 07:40:45 UTC 2014


Author: jmm
Date: 2014-12-22 07:40:45 +0000 (Mon, 22 Dec 2014)
New Revision: 30899

Modified:
   data/CVE/list
Log:
new json-glib issue
one kernel issue n/a for squeeze


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-12-22 05:28:05 UTC (rev 30898)
+++ data/CVE/list	2014-12-22 07:40:45 UTC (rev 30899)
@@ -1,3 +1,7 @@
+CVE-2014-XXXX 
+	- json-glib <unfixed> (low; bug #772585)
+	[squeeze] - json-glib <not-affected> (Tool not yet present)
+	[wheezy] - json-glib <not-affected> (Tool not yet present)
 CVE-2014-XXXX [XSS]
 	- mediawiki <unfixed> (bug #773654)
 	NOTE: https://phabricator.wikimedia.org/T76686 (still not public)
@@ -3000,7 +3004,7 @@
 	NOTE: the initial commit would be an incomplete fix and needs additional changes
 CVE-2014-8559 (The d_walk function in fs/dcache.c in the Linux kernel through 3.17.2 ...)
 	- linux <unfixed>
-	- linux-2.6 <removed>
+	- linux-2.6 <not-affected> (Introduced in 2.6.38)
 	NOTE: References in http://www.openwall.com/lists/oss-security/2014/10/30/7
 	NOTE: Upstream fix: https://git.kernel.org/linus/ca5358ef75fc69fee5322a38a340f5739d997c10
 	NOTE: Upstream fix: https://git.kernel.org/linus/946e51f2bf37f1656916eb75bd0742ba33983c28




More information about the Secure-testing-commits mailing list