[Secure-testing-commits] r25665 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue Feb 11 06:24:34 UTC 2014
Author: carnil
Date: 2014-02-11 06:24:34 +0000 (Tue, 11 Feb 2014)
New Revision: 25665
Modified:
data/CVE/list
Log:
Add also CVE-2014-1933
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-02-11 06:20:57 UTC (rev 25664)
+++ data/CVE/list 2014-02-11 06:24:34 UTC (rev 25665)
@@ -3,6 +3,8 @@
[wheezy] - oath-toolkit <no-dsa> (Minor issue)
NOTE: http://lists.nongnu.org/archive/html/oath-toolkit-help/2013-12/msg00000.html
NOTE: possible patch: http://lists.nongnu.org/archive/html/oath-toolkit-help/2013-12/txtUm85v7Wqcy.txt
+CVE-2014-1933 [sensitive filename information on commandline visible]
+ - pillow <unfixed> (bug #737059)
CVE-2014-1932 [insecure use of /tmp]
- pillow <unfixed> (bug #737059)
CVE-2014-1928 [Erroneous insertion of a \ character]
More information about the Secure-testing-commits
mailing list