[Secure-testing-commits] r25018 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Jan 2 12:18:35 UTC 2014


Author: jmm
Date: 2014-01-02 12:18:35 +0000 (Thu, 02 Jan 2014)
New Revision: 25018

Modified:
   data/CVE/list
Log:
record sid fix for evince
samba pam_winbind no-dsa for now
new libv8 issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-01-02 11:27:16 UTC (rev 25017)
+++ data/CVE/list	2014-01-02 12:18:35 UTC (rev 25018)
@@ -10153,7 +10153,7 @@
 	- joomla <itp> (bug #571794)
 CVE-2013-3718 [evince missing check on number of pages]
 	RESERVED
-	- evince <not-affected>
+	- evince 3.10.0-1
 	[wheezy] - evince <not-affected>
 	[squeeze] - evince <not-affected> (Vulnerable code not present)
 	NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=701302
@@ -12089,8 +12089,8 @@
 	{DSA-2732-1}
 	- chromium-browser 28.0.1500.95-1
 	[squeeze] - chromium-browser <end-of-life>
-	- libv8 <undetermined>
-	TODO: check libv8
+	- libv8 <removed>
+	- libv8-3.14 <unfixed>
 CVE-2013-2881 (Google Chrome before 28.0.1500.95 does not properly handle frames, ...)
 	{DSA-2732-1}
 	- chromium-browser 28.0.1500.95-1
@@ -20927,8 +20927,11 @@
 	[squeeze] - net-snmp <no-dsa> (Minor issue)
 	NOTE: http://sourceforge.net/p/net-snmp/bugs/2411/
 CVE-2012-6150 (The winbind_name_list_to_sid_string_list function in ...)
-	- samba 2:4.0.13+dfsg-1
-	- samba4 <removed>
+	- samba 2:4.0.13+dfsg-1 (low)
+	[wheezy] - samba <no-dsa> (Can be fixed along in a future DSA)
+	[squeeze] - samba <no-dsa> (Can be fixed along in a future DSA)
+	- samba4 <removed> (low)
+	[wheezy] - samba4 <no-dsa> (Minor issue)
 	NOTE: introduced http://git.samba.org/?p=samba.git;a=commit;h=31f1a36901b5b8959dc51401c09c114829b50392
 	NOTE: fixed by http://git.samba.org/?p=samba.git;a=commitdiff;h=f62683956a3b182f6a61cc7a2b4ada2e74cde243
 	NOTE: https://bugzilla.samba.org/show_bug.cgi?id=10300




More information about the Secure-testing-commits mailing list