[Secure-testing-commits] r27670 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Jul 9 13:08:46 UTC 2014


Author: jmm
Date: 2014-07-09 13:08:46 +0000 (Wed, 09 Jul 2014)
New Revision: 27670

Modified:
   data/CVE/list
Log:
horizon fixed / no-dsa
mark several php issues as n/a


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-07-09 11:57:06 UTC (rev 27669)
+++ data/CVE/list	2014-07-09 13:08:46 UTC (rev 27670)
@@ -1709,11 +1709,13 @@
 CVE-2014-3953 [SCTP kernel memory disclosures]
 	RESERVED
 	- kfreebsd-8 <removed>
+	[wheezy] - kfreebsd-8 <no-dsa> (kfreebsd-8 only a test kernel, will be fixed in a point update)
 	- kfreebsd-9 <unfixed> (bug #754237)
 	- kfreebsd-10 <unfixed>
 CVE-2014-3952 [sockbuf CMSG kernel memory disclosure]
 	RESERVED
 	- kfreebsd-8 <removed>
+	[wheezy] - kfreebsd-8 <no-dsa> (kfreebsd-8 only a test kernel, will be fixed in a point update)
 	- kfreebsd-9 <unfixed> (bug #754236)
 	- kfreebsd-10 <unfixed>
 CVE-2014-3951
@@ -2747,6 +2749,7 @@
 	- file 1:5.19-1
 	NOTE: https://github.com/file/file/commit/93e063ee374b6a75729df9e7201fb511e47e259d
 	- php5 5.6.0~rc1+dfsg-1
+	[squeeze] - php5 <not-affected> (Vulnerable code was introduced later)
 	NOTE: https://bugs.php.net/bug.php?id=67413
 CVE-2014-3486
 	RESERVED
@@ -2789,6 +2792,7 @@
 	- file 1:5.19-1
 	NOTE: https://github.com/file/file/commit/36fadd29849b8087af9f4586f89dbf74ea45be67
 	- php5 5.6.0~rc1+dfsg-1
+	[squeeze] - php5 <not-affected> (Vulnerable code was introduced later)
 	NOTE: https://bugs.php.net/bug.php?id=67411
 CVE-2014-3478 [mconvert incorrect handling of truncated pascal string size]
 	RESERVED
@@ -2796,6 +2800,7 @@
 	- file 1:5.19-1
 	NOTE: https://github.com/file/file/commit/27a14bc7ba285a0a5ebfdb55e54001aa11932b08
 	- php5 5.6.0~rc1+dfsg-1
+	[squeeze] - php5 <not-affected> (Vulnerable code was introduced later)
 	NOTE: http://bugs.php.net/bug.php?id=67410
 CVE-2014-3477 (The dbus-daemon in D-Bus 1.2.x through 1.4.x, 1.6.x before 1.6.20, and ...)
 	{DSA-2971-1}
@@ -2807,13 +2812,16 @@
 	[wheezy] - keystone <not-affected> (Vulnerable code not present)
 CVE-2014-3475
 	RESERVED
-	- horizon <unfixed> (bug #754255)
+	- horizon 2014.1.1-3 (bug #754255)
+	[wheezy] - horizon <no-dsa> (Minor issue)
 CVE-2014-3474
 	RESERVED
-	- horizon <unfixed> (bug #754255)
+	- horizon 2014.1.1-3 (bug #754255)
+	[wheezy] - horizon <no-dsa> (Minor issue)
 CVE-2014-3473
 	RESERVED
-	- horizon <unfixed> (bug #754255)
+	- horizon 2014.1.1-3 (bug #754255)
+	[wheezy] - horizon <no-dsa> (Minor issue)
 CVE-2014-3472
 	RESERVED
 CVE-2014-3471 [hw: pci: use after free triggered via guest]




More information about the Secure-testing-commits mailing list