[Secure-testing-commits] r25665 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Feb 11 06:24:34 UTC 2014


Author: carnil
Date: 2014-02-11 06:24:34 +0000 (Tue, 11 Feb 2014)
New Revision: 25665

Modified:
   data/CVE/list
Log:
Add also CVE-2014-1933

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-02-11 06:20:57 UTC (rev 25664)
+++ data/CVE/list	2014-02-11 06:24:34 UTC (rev 25665)
@@ -3,6 +3,8 @@
 	[wheezy] - oath-toolkit <no-dsa> (Minor issue)
 	NOTE: http://lists.nongnu.org/archive/html/oath-toolkit-help/2013-12/msg00000.html
 	NOTE: possible patch: http://lists.nongnu.org/archive/html/oath-toolkit-help/2013-12/txtUm85v7Wqcy.txt
+CVE-2014-1933 [sensitive filename information on commandline visible]
+	- pillow <unfixed> (bug #737059)
 CVE-2014-1932 [insecure use of /tmp]
 	- pillow <unfixed> (bug #737059)
 CVE-2014-1928 [Erroneous insertion of a \ character]




More information about the Secure-testing-commits mailing list