[Secure-testing-commits] r33714 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Apr 20 16:58:57 UTC 2015


Author: carnil
Date: 2015-04-20 16:58:57 +0000 (Mon, 20 Apr 2015)
New Revision: 33714

Modified:
   data/CVE/list
Log:
Remove ruby-redcarpet item, most likely a site-specific problem

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-20 16:32:37 UTC (rev 33713)
+++ data/CVE/list	2015-04-20 16:58:57 UTC (rev 33714)
@@ -889,11 +889,6 @@
 	[squeeze] - icecast2 <not-affected> (stream_auth introduced in 2.3.3)
 	NOTE: https://trac.xiph.org/ticket/2191
 	NOTE: http://www.openwall.com/lists/oss-security/2015/04/08/8
-CVE-2015-XXXX [possible XSS via autolinking of untrusted markdown]
-	- ruby-redcarpet <unfixed>
-	NOTE: Fix: https://github.com/vmg/redcarpet/commit/e5a10516d07114d582d13b9125b733008c61c242
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/07/11
-	TODO: check possibly related gems
 CVE-2014-9715 [DoS -- OOPS NULL pointer dereference in nf_nat_setup_info+0x471]
 	RESERVED
 	- linux 3.14.5-1 (bug #741667)




More information about the Secure-testing-commits mailing list