[Secure-testing-commits] r25662 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Mon Feb 10 22:26:58 UTC 2014
Author: carnil
Date: 2014-02-10 22:26:58 +0000 (Mon, 10 Feb 2014)
New Revision: 25662
Modified:
data/CVE/list
Log:
Add fixed version for virtualbox issues
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-02-10 21:14:11 UTC (rev 25661)
+++ data/CVE/list 2014-02-10 22:26:58 UTC (rev 25662)
@@ -3284,10 +3284,10 @@
- openjdk-7 <not-affected> (Specific to MacOS X)
CVE-2014-0407 (Unspecified vulnerability in the Oracle VM VirtualBox component in ...)
- virtualbox-ose <removed> (low)
- - virtualbox <unfixed> (low; bug #735410)
+ - virtualbox 4.3.6-dfsg-1 (low; bug #735410)
CVE-2014-0406 (Unspecified vulnerability in the Oracle VM VirtualBox component in ...)
- virtualbox-ose <removed> (low)
- - virtualbox <unfixed> (low; bug #735410)
+ - virtualbox 4.3.6-dfsg-1 (low; bug #735410)
CVE-2014-0405 (Unspecified vulnerability in the Oracle VM VirtualBox component in ...)
- virtualbox-guest-additions <removed> (bug #735410)
[squeeze] - virtualbox-guest-additions <no-dsa> (Non-free not supported)
@@ -3295,7 +3295,7 @@
[wheezy] - virtualbox-guest-additions-iso <no-dsa> (Non-free not supported)
CVE-2014-0404 (Unspecified vulnerability in the Oracle VM VirtualBox component in ...)
- virtualbox-ose <removed> (low)
- - virtualbox <unfixed> (low; bug #735410)
+ - virtualbox 4.3.6-dfsg-1 (low; bug #735410)
CVE-2014-0403 (Unspecified vulnerability in Oracle Java SE 6u65 and 7u45 allows ...)
- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
@@ -7425,7 +7425,7 @@
- openjdk-7 7u51-2.4.4-1
CVE-2013-5892 (Unspecified vulnerability in the Oracle VM VirtualBox component in ...)
- virtualbox-ose <removed> (low)
- - virtualbox <unfixed> (low; bug #735410)
+ - virtualbox 4.3.6-dfsg-1 (low; bug #735410)
TODO: recheck, might be not limited to local DoS according to #735410
CVE-2013-5891 (Unspecified vulnerability in the MySQL Server component in Oracle ...)
{DSA-2848-1}
More information about the Secure-testing-commits
mailing list