[Secure-testing-commits] r29812 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Nov 3 15:51:34 UTC 2014


Author: carnil
Date: 2014-11-03 15:51:33 +0000 (Mon, 03 Nov 2014)
New Revision: 29812

Modified:
   data/CVE/list
Log:
Add CVE-2014-5277/docker.io

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-11-03 15:49:56 UTC (rev 29811)
+++ data/CVE/list	2014-11-03 15:51:33 UTC (rev 29812)
@@ -7310,8 +7310,10 @@
 	NOT-FOR-US: boot2docker
 CVE-2014-5278
 	RESERVED
-CVE-2014-5277
+CVE-2014-5277 [HTTP downgrade attack against registry]
 	RESERVED
+	- docker.io 1.3.1~dfsg1-1
+	NOTE: https://groups.google.com/d/topic/docker-user/oYm0i3xShJU/discussion
 CVE-2014-5276 (Multiple cross-site scripting (XSS) vulnerabilities in Pro Chat Rooms ...)
 	NOT-FOR-US: Pro Chat Rooms
 CVE-2014-5275 (Multiple SQL injection vulnerabilities in includes/functions.php in ...)




More information about the Secure-testing-commits mailing list