[Secure-testing-commits] r28711 - in data: CVE DSA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Sep 11 08:28:05 UTC 2014


Author: carnil
Date: 2014-09-11 08:28:05 +0000 (Thu, 11 Sep 2014)
New Revision: 28711

Modified:
   data/CVE/list
   data/DSA/list
Log:
Adjust tracker information for CVE-2014-3620/curl

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-09-11 07:36:57 UTC (rev 28710)
+++ data/CVE/list	2014-09-11 08:28:05 UTC (rev 28711)
@@ -6048,9 +6048,11 @@
 	RESERVED
 CVE-2014-3620 [libcurl cookie leak for TLDs]
 	RESERVED
-	{DSA-3022-1}
 	- curl 7.38.0-1
+	[wheezy] - curl <not-affected> (affects versions 7.31.0 and later)
+	[squeeze] - curl <not-affected> (affects versions 7.31.0 and later)
 	NOTE: http://curl.haxx.se/docs/adv_20140910B.html
+	NOTE: Introduced by https://github.com/bagder/curl/commit/85b9dc8023
 CVE-2014-3619
 	RESERVED
 CVE-2014-3617

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2014-09-11 07:36:57 UTC (rev 28710)
+++ data/DSA/list	2014-09-11 08:28:05 UTC (rev 28711)
@@ -1,5 +1,5 @@
 [10 Sep 2014] DSA-3022-1 curl - security update
-	{CVE-2014-3613 CVE-2014-3620}
+	{CVE-2014-3613}
 	[wheezy] - curl 7.26.0-1+wheezy10
 [09 Sep 2014] DSA-3021-1 file - security update
 	{CVE-2014-0207 CVE-2014-0237 CVE-2014-0238 CVE-2014-3478 CVE-2014-3479 CVE-2014-3480 CVE-2014-3487 CVE-2014-3538 CVE-2014-3587}




More information about the Secure-testing-commits mailing list