[Secure-testing-commits] r28701 - data/CVE

Joey Hess joeyh at moszumanska.debian.org
Wed Sep 10 21:14:11 UTC 2014


Author: joeyh
Date: 2014-09-10 21:14:11 +0000 (Wed, 10 Sep 2014)
New Revision: 28701

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-09-10 20:04:22 UTC (rev 28700)
+++ data/CVE/list	2014-09-10 21:14:11 UTC (rev 28701)
@@ -2153,6 +2153,7 @@
 	- cacti 0.8.8b+dfsg-8
 	NOTE: http://svn.cacti.net/viewvc?view=rev&revision=7454
 CVE-2014-4274 [unspecific error when handling MyISAM temporary files can be exploited to execute arbitrary code]
+	RESERVED
 	- mariadb-5.5 5.5.39-1
 	- mysql-5.5 5.5.39-1
 	- mysql-5.1 <removed>
@@ -6047,6 +6048,7 @@
 	RESERVED
 CVE-2014-3620 [libcurl cookie leak for TLDs]
 	RESERVED
+	{DSA-3022-1}
 	- curl 7.38.0-1
 	NOTE: http://curl.haxx.se/docs/adv_20140910B.html
 CVE-2014-3619
@@ -6069,6 +6071,7 @@
 	[squeeze] - pdns-recursor <not-affected> (Only affects 3.6.0)
 CVE-2014-3613 [libcurl cookie leak with IP address as domain]
 	RESERVED
+	{DSA-3022-1}
 	- curl 7.38.0-1
 	NOTE: http://curl.haxx.se/docs/adv_20140910A.html
 CVE-2014-3612
@@ -6151,7 +6154,7 @@
 CVE-2014-3588
 	RESERVED
 CVE-2014-3587 (Integer overflow in the cdf_read_property_info function in cdf.c in ...)
-	{DSA-3021-1 DSA-3008-1}
+	{DSA-3021-1 DSA-3008-1 DLA-50-1}
 	- php5 5.6.0+dfsg-1
 	NOTE: https://bugs.php.net/bug.php?id=67716
 	NOTE: https://github.com/php/php-src/commit/7ba1409a1aee5925180de546057ddd84ff267947
@@ -6296,7 +6299,7 @@
 CVE-2014-3539
 	RESERVED
 CVE-2014-3538 (file before 5.19 does not properly restrict the amount of data read ...)
-	{DSA-3021-1 DSA-3008-1}
+	{DSA-3021-1 DSA-3008-1 DLA-50-1}
 	- file 1:5.19-1
 	NOTE: fix relies on the new feature that introduced regex/<length> syntax, might be too intrusive for backporting.
 	- php5 5.6.0~rc4+dfsg-1




More information about the Secure-testing-commits mailing list