[Secure-testing-commits] r26846 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed May 7 05:19:59 UTC 2014


Author: carnil
Date: 2014-05-07 05:19:59 +0000 (Wed, 07 May 2014)
New Revision: 26846

Modified:
   data/CVE/list
Log:
Add one rails issue, to be checked

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-05-07 05:03:57 UTC (rev 26845)
+++ data/CVE/list	2014-05-07 05:19:59 UTC (rev 26846)
@@ -8330,8 +8330,13 @@
 	[wheezy] - linux 3.2.57-1
 	- linux-2.6 <not-affected> (Introduced in 3.1)
 	NOTE: http://marc.info/?l=linux-netdev&m=139446896921968&w=2
-CVE-2014-0130
+CVE-2014-0130 [Directory Traversal Vulnerability With Certain Route Configurations]
 	RESERVED
+	- ruby-actionpack-2.3 <removed>
+	- ruby-actionpack-3.2 <unfixed>
+	- rails-3.2 <unfixed>
+	- rails-4.0 <unfixed>
+	TODO: check
 CVE-2014-0129 (badges/mybadges.php in Moodle 2.5.x before 2.5.5 and 2.6.x before ...)
 	- moodle 2.6.2-1
 	[squeeze] - moodle <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list