[Secure-testing-commits] r33770 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Apr 23 05:43:19 UTC 2015


Author: carnil
Date: 2015-04-23 05:43:19 +0000 (Thu, 23 Apr 2015)
New Revision: 33770

Modified:
   data/CVE/list
Log:
Add note for the libmodule-signature-perl issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-22 21:10:16 UTC (rev 33769)
+++ data/CVE/list	2015-04-23 05:43:19 UTC (rev 33770)
@@ -1099,18 +1099,22 @@
 	- libmodule-signature-perl <unfixed>
 	NOTE: Upstream fix: https://github.com/audreyt/module-signature/commit/8a9164596fa5952d4fbcde5aa1c7d1c7bc85372f
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/07/1
+	NOTE: Changes might needed in libtest-signature-perl, need further investigation
 CVE-2015-XXXX [arbitrary code execution during test phase]
 	- libmodule-signature-perl <unfixed>
 	NOTE: Upstream fix: https://github.com/audreyt/module-signature/commit/8a9164596fa5952d4fbcde5aa1c7d1c7bc85372f
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/07/1
+	NOTE: Changes might needed in libtest-signature-perl, need further investigation
 CVE-2015-XXXX [arbitrary code execution when verifying module signatures]
 	- libmodule-signature-perl <unfixed>
 	NOTE: Upstream fix: https://github.com/audreyt/module-signature/commit/8a9164596fa5952d4fbcde5aa1c7d1c7bc85372f
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/07/1
+	NOTE: Changes might needed in libtest-signature-perl, need further investigation
 CVE-2015-XXXX [arbitrary modules loading in some circumstances]
 	- libmodule-signature-perl <unfixed>
 	NOTE: Upstream fix: https://github.com/audreyt/module-signature/commit/c41e8885b862b9fce2719449bc9336f0bea658ef
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/07/1
+	NOTE: Changes might needed in libtest-signature-perl, need further investigation
 CVE-2015-2921
 	RESERVED
 CVE-2015-2920




More information about the Secure-testing-commits mailing list