[Secure-testing-commits] r25583 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri Feb 7 23:28:57 UTC 2014


Author: jmm
Date: 2014-02-07 23:28:57 +0000 (Fri, 07 Feb 2014)
New Revision: 25583

Modified:
   data/CVE/list
Log:
no-dsa: suphp, fookebox


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-02-07 22:55:01 UTC (rev 25582)
+++ data/CVE/list	2014-02-07 23:28:57 UTC (rev 25583)
@@ -178,9 +178,12 @@
 	TODO: check
 	NOTE: http://bugs.python.org/issue20078
 CVE-2014-XXXX [no input validation for search function]
-	- fookebox <unfixed> (bug #736821)
+	- fookebox <unfixed> (low; bug #736821)
+	[wheezy] - fookebox <no-dsa> (Minor issue)
 CVE-2013-XXXX
 	- suphp <unfixed> (bug #736969)
+	[squeeze] - suphp <no-dsa> (Minor issue)
+	[wheezy] - suphp <no-dsa> (Minor issue)
 	NOTE: Should be removed from the archive (dead upstream / orphaned)
 CVE-2013-XXXX
 	- mupdf <unfixed>
@@ -487,7 +490,7 @@
 	NOTE: https://www.otrs.com/security-advisory-2014-01-csrf-issue-customer-web-interface/
 CVE-2014-1693
 	RESERVED
-	- erlang <unfixed> (low)
+	- erlang <unfixed> (low; bug #738132)
 	[squeeze] - erlang <no-dsa> (Minor issue)
 	[wheezy] - erlang <no-dsa> (Minor issue)
 CVE-2014-1692 (The hash_buffer function in schnorr.c in OpenSSH through 6.4, when ...)




More information about the Secure-testing-commits mailing list