[Secure-testing-commits] r26066 - in data: . CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue Mar 11 18:51:43 UTC 2014
Author: carnil
Date: 2014-03-11 18:51:43 +0000 (Tue, 11 Mar 2014)
New Revision: 26066
Modified:
data/CVE/list
data/dsa-needed.txt
Log:
Mark libcgi-application-perl as no-dsa
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-03-11 18:50:49 UTC (rev 26065)
+++ data/CVE/list 2014-03-11 18:51:43 UTC (rev 26066)
@@ -1024,6 +1024,8 @@
CVE-2013-7329 [information disclosure]
RESERVED
- libcgi-application-perl <unfixed> (bug #739505)
+ [wheezy] - libcgi-application-perl <no-dsa> (Minor issue)
+ [squeeze] - libcgi-application-perl <no-dsa> (Minor issue)
NOTE: suggested fix https://github.com/markstos/CGI--Application/pull/15
CVE-2013-7325
RESERVED
Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt 2014-03-11 18:50:49 UTC (rev 26065)
+++ data/dsa-needed.txt 2014-03-11 18:51:43 UTC (rev 26066)
@@ -34,9 +34,6 @@
--
liblivemedia/stable
--
-libcgi-application-perl
- NOTE: not yet sure if this needs a DSA
---
libmarc-xml-perl (carnil)
NOTE: older versions do not have the ability to set a user custom parser, trying to fix CVE-2014-1626 not clear yet
NOTE: upstream developer contacted
More information about the Secure-testing-commits
mailing list