[Secure-testing-commits] r27802 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri Jul 18 08:45:44 UTC 2014


Author: jmm
Date: 2014-07-18 08:45:44 +0000 (Fri, 18 Jul 2014)
New Revision: 27802

Modified:
   data/CVE/list
Log:
new apache issue. sf, can you update squeeze/wheezy


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-07-18 06:55:59 UTC (rev 27801)
+++ data/CVE/list	2014-07-18 08:45:44 UTC (rev 27802)
@@ -20017,6 +20017,9 @@
 	[squeeze] - openssl <not-affected> (Only affects 1.0.1 to 1.0.1e)
 CVE-2013-4352
 	RESERVED
+	- apache2 2.4.7-1 (low)
+	NOTE: According to http://httpd.apache.org/security/vulnerabilities_24.html this should only affect 
+	NOTE: 2.4.6, but that seems wrong, since 2.4.6 was a single-change regression update
 CVE-2013-4351 (GnuPG 1.4.x, 2.0.x, and 2.1.x treats a key flags subpacket with all ...)
 	{DSA-2774-1 DSA-2773-1}
 	- gnupg 1.4.15-1 (low; bug #722722)




More information about the Secure-testing-commits mailing list