[Secure-testing-commits] r29144 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Sep 29 17:54:13 UTC 2014


Author: carnil
Date: 2014-09-29 17:54:13 +0000 (Mon, 29 Sep 2014)
New Revision: 29144

Modified:
   data/CVE/list
Log:
Add crossreferences and remove [squeeze] tagged entry

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-09-29 15:36:34 UTC (rev 29143)
+++ data/CVE/list	2014-09-29 17:54:13 UTC (rev 29144)
@@ -18028,7 +18028,7 @@
 CVE-2014-0232 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
 	NOT-FOR-US: Apache OFBiz
 CVE-2014-0231 (The mod_cgid module in the Apache HTTP Server before 2.4.10 does not ...)
-	{DSA-2989-1}
+	{DSA-2989-1 DLA-66-1}
 	- apache2 2.4.10-1
 CVE-2014-0230
 	RESERVED
@@ -18040,7 +18040,7 @@
 CVE-2014-0227
 	RESERVED
 CVE-2014-0226 (Race condition in the mod_status module in the Apache HTTP Server ...)
-	{DSA-2989-1}
+	{DSA-2989-1 DLA-66-1}
 	- apache2 2.4.10-1
 CVE-2014-0225 [Information disclosure via SSRF]
 	RESERVED
@@ -18457,7 +18457,7 @@
 	- tomcat7 7.0.54-1
 	- tomcat6 6.0.41-1
 CVE-2014-0118 (The deflate_in_filter function in mod_deflate.c in the mod_deflate ...)
-	{DSA-2989-1}
+	{DSA-2989-1 DLA-66-1}
 	- apache2 2.4.10-1
 CVE-2014-0117 (The mod_proxy module in the Apache HTTP Server 2.4.x before 2.4.10, ...)
 	- apache2 2.4.10-1
@@ -20167,8 +20167,8 @@
 CVE-2013-6439 (Candlepin in Red Hat Subscription Asset Manager 1.0 through 1.3 uses a ...)
 	NOT-FOR-US: Candlepin
 CVE-2013-6438 (The dav_xml_get_cdata function in main/util.c in the mod_dav module in ...)
+	{DLA-66-1}
 	- apache2 2.4.9-1
-	[squeeze] - apache2 <no-dsa> (will be fixed in point release unless CVE-2014-0098 needs a DSA)
 	[wheezy] - apache2 2.2.22-13+deb7u2
 CVE-2013-6437 (The libvirt driver in OpenStack Compute (Nova) before 2013.2.2 and ...)
 	- nova 2013.2.2




More information about the Secure-testing-commits mailing list