[Secure-testing-commits] r28701 - data/CVE
Joey Hess
joeyh at moszumanska.debian.org
Wed Sep 10 21:14:11 UTC 2014
Author: joeyh
Date: 2014-09-10 21:14:11 +0000 (Wed, 10 Sep 2014)
New Revision: 28701
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-09-10 20:04:22 UTC (rev 28700)
+++ data/CVE/list 2014-09-10 21:14:11 UTC (rev 28701)
@@ -2153,6 +2153,7 @@
- cacti 0.8.8b+dfsg-8
NOTE: http://svn.cacti.net/viewvc?view=rev&revision=7454
CVE-2014-4274 [unspecific error when handling MyISAM temporary files can be exploited to execute arbitrary code]
+ RESERVED
- mariadb-5.5 5.5.39-1
- mysql-5.5 5.5.39-1
- mysql-5.1 <removed>
@@ -6047,6 +6048,7 @@
RESERVED
CVE-2014-3620 [libcurl cookie leak for TLDs]
RESERVED
+ {DSA-3022-1}
- curl 7.38.0-1
NOTE: http://curl.haxx.se/docs/adv_20140910B.html
CVE-2014-3619
@@ -6069,6 +6071,7 @@
[squeeze] - pdns-recursor <not-affected> (Only affects 3.6.0)
CVE-2014-3613 [libcurl cookie leak with IP address as domain]
RESERVED
+ {DSA-3022-1}
- curl 7.38.0-1
NOTE: http://curl.haxx.se/docs/adv_20140910A.html
CVE-2014-3612
@@ -6151,7 +6154,7 @@
CVE-2014-3588
RESERVED
CVE-2014-3587 (Integer overflow in the cdf_read_property_info function in cdf.c in ...)
- {DSA-3021-1 DSA-3008-1}
+ {DSA-3021-1 DSA-3008-1 DLA-50-1}
- php5 5.6.0+dfsg-1
NOTE: https://bugs.php.net/bug.php?id=67716
NOTE: https://github.com/php/php-src/commit/7ba1409a1aee5925180de546057ddd84ff267947
@@ -6296,7 +6299,7 @@
CVE-2014-3539
RESERVED
CVE-2014-3538 (file before 5.19 does not properly restrict the amount of data read ...)
- {DSA-3021-1 DSA-3008-1}
+ {DSA-3021-1 DSA-3008-1 DLA-50-1}
- file 1:5.19-1
NOTE: fix relies on the new feature that introduced regex/<length> syntax, might be too intrusive for backporting.
- php5 5.6.0~rc4+dfsg-1
More information about the Secure-testing-commits
mailing list