[Secure-testing-commits] r33601 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Apr 15 07:13:11 UTC 2015


Author: carnil
Date: 2015-04-15 07:13:11 +0000 (Wed, 15 Apr 2015)
New Revision: 33601

Modified:
   data/CVE/list
Log:
Add proftpd-dfsg issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-15 06:57:18 UTC (rev 33600)
+++ data/CVE/list	2015-04-15 07:13:11 UTC (rev 33601)
@@ -1,3 +1,9 @@
+CVE-2015-XXXX [nauthenticated copying of files via SITE CPFR/CPTO allowed by mod_copy]
+	- proftpd-dfsg <unfixed>
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/15/2
+	NOTE: https://github.com/proftpd/proftpd/pull/109
+	NOTE: http://bugs.proftpd.org/show_bug.cgi?id=4169
+	NOTE: https://cxsecurity.com/issue/WLB-2015040075
 CVE-2015-XXXX [Buffer overruns in Linux kernel RFC4106 implementation using AESNI]
 	- linux <unfixed>
 	- linux-2.6 <removed>




More information about the Secure-testing-commits mailing list