[Secure-testing-commits] r28624 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Sep 6 18:29:54 UTC 2014


Author: carnil
Date: 2014-09-06 18:29:54 +0000 (Sat, 06 Sep 2014)
New Revision: 28624

Modified:
   data/CVE/list
Log:
Add fixed version for CVE-2014-0225/libspring-java

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-09-06 12:53:45 UTC (rev 28623)
+++ data/CVE/list	2014-09-06 18:29:54 UTC (rev 28624)
@@ -15692,7 +15692,7 @@
 	- apache2 2.4.10-1
 CVE-2014-0225 [Information disclosure via SSRF]
 	RESERVED
-	- libspring-java <unfixed> (low; bug #753470)
+	- libspring-java 3.0.6.RELEASE-14 (low; bug #753470)
 	[squeeze] - libspring-java <no-dsa> (Minor issue)
 	[wheezy] - libspring-java <no-dsa> (Minor issue)
 CVE-2014-0224 (OpenSSL before 0.9.8za, 1.0.0 before 1.0.0m, and 1.0.1 before 1.0.1h ...)




More information about the Secure-testing-commits mailing list