[Secure-testing-commits] r29928 - data/CVE

Stefan Fritsch sf at moszumanska.debian.org
Sun Nov 9 13:49:14 UTC 2014


Author: sf
Date: 2014-11-09 13:49:14 +0000 (Sun, 09 Nov 2014)
New Revision: 29928

Modified:
   data/CVE/list
Log:
mark apache2 trailers issue CVE-2013-5704 as no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-11-09 13:06:45 UTC (rev 29927)
+++ data/CVE/list	2014-11-09 13:49:14 UTC (rev 29928)
@@ -25587,9 +25587,8 @@
 CVE-2013-5704 (The mod_headers module in the Apache HTTP Server 2.2.22 allows remote ...)
 	{DLA-71-1}
 	- apache2 2.4.10-2 (medium)
+	[wheezy] - apache2 <no-dsa> (minor issue)
 	NOTE: http://marc.info/?l=apache-httpd-dev&m=139636309822854&w=2
-	NOTE: Patch for 2.4.x at: https://github.com/apache/httpd/commit/bd34b9d92894b7fc01810fc11a059fa30067e431#diff-381c180d963fb4507c77d80edb208224
-	NOTE: Patche for 2.2.x at: https://github.com/apache/httpd/commit/16e241ed9f0482acfda30b115227101744ccbc2c
 CVE-2013-5703 (The DrayTek Vigor 2700 router 2.8.3 allows remote attackers to execute ...)
 	NOT-FOR-US: DrayTek Vigor 2700 router
 CVE-2013-5702 (Multiple cross-site scripting (XSS) vulnerabilities in WebCenter in ...)




More information about the Secure-testing-commits mailing list