[Secure-testing-commits] r25418 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jan 29 22:05:04 UTC 2014


Author: carnil
Date: 2014-01-29 22:05:04 +0000 (Wed, 29 Jan 2014)
New Revision: 25418

Modified:
   data/CVE/list
Log:
Add CVE-2013-6393/libyaml

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-01-29 21:56:43 UTC (rev 25417)
+++ data/CVE/list	2014-01-29 22:05:04 UTC (rev 25418)
@@ -5664,8 +5664,10 @@
 CVE-2013-6394 (Percona XtraBackup before 2.1.6 uses a constant string for the ...)
 	- percona-xtrabackup <unfixed> (bug #730544)
 	TODO: check if this if fixed with 2.1.6-2; note fw's comment on oss-security
-CVE-2013-6393
+CVE-2013-6393 [heap-based buffer overflow when parsing YAML tags]
 	RESERVED
+	- libyaml <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1033990
 CVE-2013-6392 (The genlock_dev_ioctl function in genlock.c in the Genlock driver for ...)
 	- linux-2.6 <not-affected> (Android-specific)
 	- linux <not-affected> (Android-specific)




More information about the Secure-testing-commits mailing list