[Secure-testing-commits] r25143 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri Jan 10 06:48:30 UTC 2014


Author: jmm
Date: 2014-01-10 06:48:30 +0000 (Fri, 10 Jan 2014)
New Revision: 25143

Modified:
   data/CVE/list
Log:
nokogiri in oldstable N/A


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-01-10 06:11:19 UTC (rev 25142)
+++ data/CVE/list	2014-01-10 06:48:30 UTC (rev 25143)
@@ -449,7 +449,7 @@
 CVE-2013-7261
 	RESERVED
 CVE-2013-7260 (Multiple stack-based buffer overflows in RealNetworks RealPlayer ...)
-	TODO: check
+	NOT-FOR-US: RealPlayer
 CVE-2014-0791 (Integer overflow in the license_read_scope_list function in ...)
 	- freerdp <unfixed> (unimportant)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=998941
@@ -4068,15 +4068,13 @@
 CVE-2013-6461 [DoS while parsing XML entities]
 	RESERVED
 	- ruby-nokogiri <unfixed>
-	- libnokogiri-ruby <removed>
+	- libnokogiri-ruby <not-affected> (1.4 and earlier not affected)
 	NOTE: https://groups.google.com/forum/#!topic/ruby-security-ann/DeJpjTAg1FA
-	TODO: check
 CVE-2013-6460 [DoS while parsing XML documents]
 	RESERVED
 	- ruby-nokogiri <unfixed>
-	- libnokogiri-ruby <removed>
+	- libnokogiri-ruby <not-affected> (1.4 and earlier not affected)
 	NOTE: https://groups.google.com/forum/#!topic/ruby-security-ann/DeJpjTAg1FA
-	TODO: check
 CVE-2013-6459 (Cross-site scripting (XSS) vulnerability in the will_paginate gem ...)
 	- ruby-will-paginate 3.0.5-1 (low; bug #733209)
 	[wheezy] - ruby-will-paginate <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list