[Secure-testing-commits] r25666 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue Feb 11 06:26:47 UTC 2014
Author: carnil
Date: 2014-02-11 06:26:47 +0000 (Tue, 11 Feb 2014)
New Revision: 25666
Modified:
data/CVE/list
Log:
Add CVE-2014-1934/eyed3
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-02-11 06:24:34 UTC (rev 25665)
+++ data/CVE/list 2014-02-11 06:26:47 UTC (rev 25666)
@@ -3,6 +3,8 @@
[wheezy] - oath-toolkit <no-dsa> (Minor issue)
NOTE: http://lists.nongnu.org/archive/html/oath-toolkit-help/2013-12/msg00000.html
NOTE: possible patch: http://lists.nongnu.org/archive/html/oath-toolkit-help/2013-12/txtUm85v7Wqcy.txt
+CVE-2014-1934 [insecure use of /tmp]
+ - eyed3 <unfixed> (bug #737062)
CVE-2014-1933 [sensitive filename information on commandline visible]
- pillow <unfixed> (bug #737059)
CVE-2014-1932 [insecure use of /tmp]
More information about the Secure-testing-commits
mailing list