[Secure-testing-commits] r25580 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Feb 7 22:39:56 UTC 2014


Author: carnil
Date: 2014-02-07 22:39:56 +0000 (Fri, 07 Feb 2014)
New Revision: 25580

Modified:
   data/CVE/list
Log:
XSA-84 got assigned 3 CVEs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-02-07 21:14:12 UTC (rev 25579)
+++ data/CVE/list	2014-02-07 22:39:56 UTC (rev 25580)
@@ -1,6 +1,15 @@
 CVE-2013-XXXX [OTP token invalidation]
 	- oath-toolkit <unfixed>
 	NOTE: http://lists.nongnu.org/archive/html/oath-toolkit-help/2013-12/msg00000.html
+CVE-2014-1893
+	- xen <unfixed>
+	TODO: check
+CVE-2014-1892
+	- xen <unfixed>
+	TODO: check
+CVE-2014-1891
+	- xen <unfixed>
+	TODO: check
 CVE-2014-1887
 	NOT-FOR-US: Apache Cordova
 CVE-2014-1886
@@ -89,9 +98,6 @@
 	- xen <unfixed>
 	[squeeze] - xen <not-affected> (Only affects 4.2 and later)
 	[wheezy] - xen <not-affected> (Only affects 4.2 and later)
-CVE-2014-XXXX [XSA-84 integer overflow in several XSM/Flask hypercalls]
-	- xen <unfixed>
-	TODO: check
 CVE-2014-1875 [insecure use of /tmp]
 	- libcapture-tiny-perl 0.24-1 (bug #737835)
 	[wheezy] - libcapture-tiny-perl <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list