[Secure-testing-commits] r33933 - data/CVE

Alessandro Ghedini ghedo at moszumanska.debian.org
Wed Apr 29 08:39:19 UTC 2015


Author: ghedo
Date: 2015-04-29 08:39:19 +0000 (Wed, 29 Apr 2015)
New Revision: 33933

Modified:
   data/CVE/list
Log:
Add curl CVE

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-29 08:39:10 UTC (rev 33932)
+++ data/CVE/list	2015-04-29 08:39:19 UTC (rev 33933)
@@ -621,8 +621,10 @@
 	- foreman <itp> (bug #663101)
 CVE-2015-3154
 	RESERVED
-CVE-2015-3153
+CVE-2015-3153 [sensitive HTTP server headers also sent to proxies]
 	RESERVED
+	- curl <unfixed>
+	NOTE: http://curl.haxx.se/docs/adv_20150429.html
 CVE-2015-3152
 	RESERVED
 CVE-2015-3151 [abrt: directory traversals in several D-Bus methods implemented by abrt-dbus]




More information about the Secure-testing-commits mailing list