[Secure-testing-commits] r27588 - data/CVE

Henri Salo fgeek-guest at moszumanska.debian.org
Thu Jul 3 09:43:36 UTC 2014


Author: fgeek-guest
Date: 2014-07-03 09:43:36 +0000 (Thu, 03 Jul 2014)
New Revision: 27588

Modified:
   data/CVE/list
Log:
CVE-2013-1068 OpenStack issues update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-07-03 08:40:25 UTC (rev 27587)
+++ data/CVE/list	2014-07-03 09:43:36 UTC (rev 27588)
@@ -28277,9 +28277,10 @@
 CVE-2013-1069 (Ubuntu Metal as a Service (MaaS) 1.2 and 1.4 uses world-readable ...)
 	NOT-FOR-US: Ubuntu MAAS
 CVE-2013-1068 (The OpenStack Nova (python-nova) package 1:2013.2.3-0 before ...)
-	- nova <undetermined>
-	- cinder <undetermined>
-	TODO: check
+	- nova <unfixed> (bug #753579)
+	- cinder <unfixed>
+	- neutron <unfixed>
+	NOTE: Requires includedir to be defined in /etc/sudoers file
 CVE-2013-1067 (Apport 2.12.5 and earlier uses weak permissions for core dump files ...)
 	- apport 2.12.6-1 (bug #727661)
 	NOTE: apport only in experimental, so we cannot track this in security-tracker




More information about the Secure-testing-commits mailing list