[Secure-testing-commits] r27215 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jun 11 07:19:12 UTC 2014


Author: carnil
Date: 2014-06-11 07:19:12 +0000 (Wed, 11 Jun 2014)
New Revision: 27215

Modified:
   data/CVE/list
Log:
Add todo item for CVE-2014-0186

NOTE: The Red Hat bug mentions that it is a regression introduced (in
Red Hat only?) by a previous patch applied for resolving a previous
security flaw.

Is the regression Red Hat specific? More information is missing from
Bugzilla so far.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-06-11 06:42:19 UTC (rev 27214)
+++ data/CVE/list	2014-06-11 07:19:12 UTC (rev 27215)
@@ -10136,6 +10136,8 @@
 	[wheezy] - neutron <not-affected> (Only affects 2013.1 to 2013.2.3, and 2014.1)
 CVE-2014-0186
 	RESERVED
+	- tomcat7 <undetermined>
+	TODO: check, is this regression affecting also a patch which Debian has already applied?
 CVE-2014-0185 (sapi/fpm/fpm/fpm_unix.c in the FastCGI Process Manager (FPM) in PHP ...)
 	{DSA-2943-1}
 	- php5 5.5.12+dfsg-1




More information about the Secure-testing-commits mailing list