[Secure-testing-commits] r25586 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Feb 8 07:33:56 UTC 2014


Author: carnil
Date: 2014-02-08 07:33:55 +0000 (Sat, 08 Feb 2014)
New Revision: 25586

Modified:
   data/CVE/list
Log:
Add two CVE assigned for python-numpy

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-02-08 07:26:46 UTC (rev 25585)
+++ data/CVE/list	2014-02-08 07:33:55 UTC (rev 25586)
@@ -51,10 +51,13 @@
 	RESERVED
 CVE-2014-1861
 	RESERVED
-CVE-2014-1859
+CVE-2014-1859 [insecure temporary file use]
 	RESERVED
-CVE-2014-1858
+	- python-numpy <unfixed> (bug #737778)
+	NOTE: issue fixed by https://github.com/numpy/numpy/commit/0bb46c1448b0d3f5453d5182a17ea7ac5854ee15
+CVE-2014-1858 [insecure temporary file use in __init__.py]
 	RESERVED
+	- python-numpy <unfixed> (bug #737778)
 CVE-2014-1857
 	RESERVED
 CVE-2014-1856
@@ -115,8 +118,6 @@
 	- linux <unfixed>
 	- linux-2.6 <removed>
 	TODO: check
-CVE-2014-XXXX [insecure use of /tmp]
-	- python-numpy <unfixed> (bug #737778)
 CVE-2014-XXXX [shell injection]
 	- python-gnupg <unfixed>
 	NOTE: CVE request http://www.openwall.com/lists/oss-security/2014/02/04/1




More information about the Secure-testing-commits mailing list