[Secure-testing-commits] r33878 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Mon Apr 27 07:26:04 UTC 2015
Author: carnil
Date: 2015-04-27 07:26:04 +0000 (Mon, 27 Apr 2015)
New Revision: 33878
Modified:
data/CVE/list
Log:
Add bug reference for libmodule-signature-perl, #783451
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-04-27 06:07:28 UTC (rev 33877)
+++ data/CVE/list 2015-04-27 07:26:04 UTC (rev 33878)
@@ -1141,22 +1141,22 @@
- hhvm <itp> (bug #570709)
NOTE: https://github.com/facebook/hhvm/commit/324701c9fd31beb4f070f1b7ef78b115fbdfec34
CVE-2015-3406 [unsigned files interpreted as signed in some circumstances]
- - libmodule-signature-perl <unfixed>
+ - libmodule-signature-perl <unfixed> (bug #783451)
NOTE: Upstream fix: https://github.com/audreyt/module-signature/commit/8a9164596fa5952d4fbcde5aa1c7d1c7bc85372f
NOTE: http://www.openwall.com/lists/oss-security/2015/04/07/1
NOTE: Changes might needed in libtest-signature-perl, need further investigation
CVE-2015-3407 [arbitrary code execution during test phase]
- - libmodule-signature-perl <unfixed>
+ - libmodule-signature-perl <unfixed> (bug #783451)
NOTE: Upstream fix: https://github.com/audreyt/module-signature/commit/8a9164596fa5952d4fbcde5aa1c7d1c7bc85372f
NOTE: http://www.openwall.com/lists/oss-security/2015/04/07/1
NOTE: Changes might needed in libtest-signature-perl, need further investigation
CVE-2015-3408 [arbitrary code execution when verifying module signatures]
- - libmodule-signature-perl <unfixed>
+ - libmodule-signature-perl <unfixed> (bug #783451)
NOTE: Upstream fix: https://github.com/audreyt/module-signature/commit/8a9164596fa5952d4fbcde5aa1c7d1c7bc85372f
NOTE: http://www.openwall.com/lists/oss-security/2015/04/07/1
NOTE: Changes might needed in libtest-signature-perl, need further investigation
CVE-2015-3409 [arbitrary modules loading in some circumstances]
- - libmodule-signature-perl <unfixed>
+ - libmodule-signature-perl <unfixed> (bug #783451)
NOTE: Upstream fix: https://github.com/audreyt/module-signature/commit/c41e8885b862b9fce2719449bc9336f0bea658ef
NOTE: http://www.openwall.com/lists/oss-security/2015/04/07/1
NOTE: Changes might needed in libtest-signature-perl, need further investigation
More information about the Secure-testing-commits
mailing list