[Secure-testing-commits] r25075 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jan 7 07:46:54 UTC 2014


Author: carnil
Date: 2014-01-07 07:46:54 +0000 (Tue, 07 Jan 2014)
New Revision: 25075

Modified:
   data/CVE/list
Log:
CVE-2013-6405 was split to three CVEs (one more might be pending, see oss-security)

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-01-07 07:31:08 UTC (rev 25074)
+++ data/CVE/list	2014-01-07 07:46:54 UTC (rev 25075)
@@ -363,6 +363,15 @@
 	RESERVED
 CVE-2014-0612
 	RESERVED
+CVE-2013-7265
+	- linux-2.6 <removed> (low)
+	- linux 3.12.6-1 (low)
+CVE-2013-7264
+	- linux-2.6 <removed> (low)
+	- linux 3.12.6-1 (low)
+CVE-2013-7263
+	- linux-2.6 <removed> (low)
+	- linux 3.12.6-1 (low)
 CVE-2013-7251 (Multiple cross-site request forgery (CSRF) vulnerabilities in ...)
 	NOT-FOR-US: ProjectForge
 CVE-2013-7250 (Cross-site scripting (XSS) vulnerability in the JsonBuilder ...)
@@ -3787,10 +3796,9 @@
 CVE-2013-6406
 	REJECTED
 	NOTE: Dublicate of CVE-2013-6858
-CVE-2013-6405 [net: uninitialised memory leakage]
+CVE-2013-6405
 	RESERVED
-	- linux-2.6 <removed> (low)
-	- linux 3.12.6-1 (low)
+	NOTE: rejected and split to CVE-2013-7263, CVE-2013-7264 and CVE-2013-7265
 CVE-2013-6404 (Quassel core (server daemon) in Quassel IRC before 0.9.2 does not ...)
 	- quassel 0.9.2-1 (low)
 	[wheezy] - quassel <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list