[Secure-testing-commits] r25640 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Feb 10 05:44:37 UTC 2014


Author: carnil
Date: 2014-02-10 05:44:37 +0000 (Mon, 10 Feb 2014)
New Revision: 25640

Modified:
   data/CVE/list
Log:
Add bug reference for python-gnupg issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-02-10 05:36:18 UTC (rev 25639)
+++ data/CVE/list	2014-02-10 05:44:37 UTC (rev 25640)
@@ -2,9 +2,9 @@
 	- oath-toolkit <unfixed>
 	NOTE: http://lists.nongnu.org/archive/html/oath-toolkit-help/2013-12/msg00000.html
 CVE-2014-1928 [Erroneous insertion of a \ character]
-	- python-gnupg <unfixed>
+	- python-gnupg <unfixed> (bug #738509)
 CVE-2014-1927 [Erroneous assumptions about the usability of " characters]
-	- python-gnupg <unfixed>
+	- python-gnupg <unfixed> (bug #738509)
 CVE-2014-1925 [SQL injection]
 	- koha <itp> (bug #702134)
 CVE-2014-1924 [MARC framework import/export function did not require authentication]
@@ -496,7 +496,7 @@
 CVE-2014-1695
 	RESERVED
 CVE-2013-7323 [Unrestricted use of unquoted strings in a shell]
-	- python-gnupg <unfixed>
+	- python-gnupg <unfixed> (bug #738509)
 CVE-2013-7318 (Cross-site scripting (XSS) vulnerability in BusinessFlow/login in ...)
 	NOT-FOR-US: AlgoSec Firewall Analyzer
 CVE-2014-1750




More information about the Secure-testing-commits mailing list