[Secure-testing-commits] r29313 - data/CVE

Thijs Kinkhorst thijs at moszumanska.debian.org
Tue Oct 7 19:13:01 UTC 2014


Author: thijs
Date: 2014-10-07 19:13:00 +0000 (Tue, 07 Oct 2014)
New Revision: 29313

Modified:
   data/CVE/list
Log:
apt-get cve assigned


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-10-07 19:12:02 UTC (rev 29312)
+++ data/CVE/list	2014-10-07 19:13:00 UTC (rev 29313)
@@ -2,8 +2,6 @@
 	- powermanga <unfixed> (low; bug #764144)
 	[wheezy] - powermanga <not-affected> (Vulnerable code not present)
 	[squeeze] - powermanga <not-affected> (Vulnerable code not present)
-CVE-2014-XXXX [apt-get: Insecure temporary changelog handling]
-	- apt 1.0.9.2 (bug #763780)
 CVE-2014-7860
 	RESERVED
 CVE-2014-7859
@@ -1330,8 +1328,9 @@
 	RESERVED
 CVE-2014-7207
 	RESERVED
-CVE-2014-7206
-	RESERVED
+CVE-2014-7206 [apt-get: Insecure temporary changelog handling]
+	- apt 1.0.9.2 (bug #763780)
+	NOTE: mitigated by Linux kernel features in wheezy and up
 CVE-2013-7405
 	RESERVED
 CVE-2013-7404




More information about the Secure-testing-commits mailing list