[Secure-testing-commits] r25320 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jan 22 05:13:34 UTC 2014


Author: carnil
Date: 2014-01-22 05:13:34 +0000 (Wed, 22 Jan 2014)
New Revision: 25320

Modified:
   data/CVE/list
Log:
CVE assigned for libmarc-xml-perl

NOTE: Versions previous to XML::LibXML switch in version 1.0 are also
affected, removing todo item.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-01-22 03:40:36 UTC (rev 25319)
+++ data/CVE/list	2014-01-22 05:13:34 UTC (rev 25320)
@@ -1,7 +1,6 @@
-CVE-2014-XXXX [XXE vulnerability]
+CVE-2014-1626 [XXE vulnerability]
 	- libmarc-xml-perl 1.0.2-1 (bug #736275)
 	NOTE: http://sourceforge.net/p/marcpm/code/ci/cf2d36597a56eeeffd53b38182b8557c7bf569ac/
-	TODO: check oldstable and stable since 1.0 changes also used module, see https://metacpan.org/changes/distribution/MARC-XML
 CVE-2014-1624 [insecure use of /tmp]
 	- pyxdg <unfixed> (bug #736247)
 CVE-2014-1611




More information about the Secure-testing-commits mailing list