[Secure-testing-commits] r30077 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Nov 15 19:00:54 UTC 2014


Author: carnil
Date: 2014-11-15 19:00:54 +0000 (Sat, 15 Nov 2014)
New Revision: 30077

Modified:
   data/CVE/list
Log:
Add CVE-2014-3625/libspring-java

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-11-15 10:14:37 UTC (rev 30076)
+++ data/CVE/list	2014-11-15 19:00:54 UTC (rev 30077)
@@ -12043,8 +12043,11 @@
 	RESERVED
 CVE-2014-3626
 	RESERVED
-CVE-2014-3625
+CVE-2014-3625 [Directory Traversal in Spring Framework]
 	RESERVED
+	- libspring-java <unfixed> (bug #769698)
+	NOTE: https://github.com/spring-projects/spring-framework/commit/3f68cd
+	NOTE: http://www.pivotal.io/security/cve-2014-3625
 CVE-2014-3624 [Ensure remap requests are properly tunneled using CONNECT requests to avoid an open relay]
 	RESERVED
 	- trafficserver 5.1.1-1




More information about the Secure-testing-commits mailing list