[Secure-testing-commits] r30310 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Nov 25 13:07:16 UTC 2014


Author: jmm
Date: 2014-11-25 13:07:16 +0000 (Tue, 25 Nov 2014)
New Revision: 30310

Modified:
   data/CVE/list
Log:
mark transition package


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-11-25 12:58:33 UTC (rev 30309)
+++ data/CVE/list	2014-11-25 13:07:16 UTC (rev 30310)
@@ -3515,6 +3515,7 @@
 	NOTE: http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-47865
 CVE-2014-7829 (Directory traversal vulnerability in ...)
 	- rails <unfixed> (bug #770934)
+	[wheezy] - rails <not-affected> (src:rails in wheezy is just a transition package)
 	[squeeze] - rails <not-affected> (Only affects >= 3)
 	- rails-3.2 <removed>
 	- ruby-actionpack-3.2 <removed>
@@ -3559,6 +3560,7 @@
 	- ruby-sprockets 2.12.3-1
 CVE-2014-7818 (Directory traversal vulnerability in ...)
 	- rails <unfixed> (bug #770934)
+	[wheezy] - rails <not-affected> (src:rails in wheezy is just a transition package)
 	[squeeze] - rails <not-affected> (Only affects >= 3)
 	- rails-3.2 <removed>
 	- ruby-actionpack-3.2 <removed>




More information about the Secure-testing-commits mailing list