[Secure-testing-commits] r25102 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Jan 8 07:57:07 UTC 2014


Author: jmm
Date: 2014-01-08 07:57:07 +0000 (Wed, 08 Jan 2014)
New Revision: 25102

Modified:
   data/CVE/list
   data/next-oldstable-point-update.txt
   data/next-point-update.txt
Log:
mapserver fixed, add spu/opsu fixes


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-01-08 07:50:28 UTC (rev 25101)
+++ data/CVE/list	2014-01-08 07:57:07 UTC (rev 25102)
@@ -411,7 +411,9 @@
 	NOTE: upstream fix: https://git.kernel.org/linus/f3d3342602f8bcbf37d7c46641cb9bca7618eb1c
 	NOTE: included in https://www.kernel.org/pub/linux/kernel/v3.x/ChangeLog-3.12.4
 CVE-2013-7262 (SQL injection vulnerability in the msPostGISLayerSetTimeFilter ...)
-	- mapserver <unfixed> (bug #734565)
+	- mapserver 6.4.1-1 (low; bug #734565)
+	[squeeze] - mapserver <no-dsa> (Minor issue)
+	[wheezy] - mapserver <no-dsa> (Minor issue)
 	NOTE: https://github.com/mapserver/mapserver/issues/4834
 CVE-2013-7261
 	RESERVED

Modified: data/next-oldstable-point-update.txt
===================================================================
--- data/next-oldstable-point-update.txt	2014-01-08 07:50:28 UTC (rev 25101)
+++ data/next-oldstable-point-update.txt	2014-01-08 07:57:07 UTC (rev 25102)
@@ -2,3 +2,5 @@
 	[squeeze] - openttd 1.0.4-7
 CVE-2013-1881
 	[squeeze] - librsvg 2.26.3-2
+CVE-2013-7262
+	[squeeze] - mapserver 5.6.5-2+squeeze3

Modified: data/next-point-update.txt
===================================================================
--- data/next-point-update.txt	2014-01-08 07:50:28 UTC (rev 25101)
+++ data/next-point-update.txt	2014-01-08 07:57:07 UTC (rev 25102)
@@ -60,3 +60,5 @@
 	[wheezy] - libmicrohttpd 0.9.20-1+deb7u1
 CVE-2013-7039
 	[wheezy] - libmicrohttpd 0.9.20-1+deb7u1
+CVE-2013-7262
+	[wheezy] - mapserver 6.0.1-3.2+deb7u2




More information about the Secure-testing-commits mailing list