[Secure-testing-commits] r29952 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Nov 10 15:23:31 UTC 2014


Author: carnil
Date: 2014-11-10 15:23:31 +0000 (Mon, 10 Nov 2014)
New Revision: 29952

Modified:
   data/CVE/list
Log:
Add fixed version for CVE-2014-8650/python-requests-kerberos

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-11-10 15:13:20 UTC (rev 29951)
+++ data/CVE/list	2014-11-10 15:23:31 UTC (rev 29952)
@@ -13,7 +13,7 @@
 CVE-2014-XXXX [PAM module does not check whether strdup allocations succeeded]
 	- oath-toolkit <unfixed> (bug #742140)
 CVE-2014-8650 [does not handle mutual authentication]
-	- python-requests-kerberos <unfixed> (bug #768408)
+	- python-requests-kerberos 0.5-2 (bug #768408)
 	NOTE: https://github.com/requests/requests-kerberos/pull/36
 	NOTE: request adding https://github.com/mkomitee/requests-kerberos/commit/9c1e08cc17bb6950455a85d33d391ecd2bce6eb6
 CVE-2014-8628 [remotely-triggerable memory leaks]




More information about the Secure-testing-commits mailing list