[Secure-testing-commits] r35896 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Aug 5 17:01:44 UTC 2015
Author: carnil
Date: 2015-08-05 17:01:44 +0000 (Wed, 05 Aug 2015)
New Revision: 35896
Modified:
data/CVE/list
Log:
Three CVEs assigned for golang
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-08-05 09:10:22 UTC (rev 35895)
+++ data/CVE/list 2015-08-05 17:01:44 UTC (rev 35896)
@@ -1,3 +1,15 @@
+CVE-2015-5741 [other discoveries of security-relevant RFC 7230 violations]
+ - golang <unfixed>
+ NOTE: https://github.com/golang/go/commit/300d9a21583e7cf0149a778a0611e76ff7c6680f
+ TODO: check
+CVE-2015-5740 [RFC 7230 3.3.3 4 violation]
+ - golang <unfixed>
+ NOTE: https://github.com/golang/go/commit/300d9a21583e7cf0149a778a0611e76ff7c6680f
+ TODO: check
+CVE-2015-5739 [Invalid headers are parsed as valid headers]
+ - golang <unfixed>
+ NOTE: https://github.com/golang/go/commit/117ddcb83d7f42d6aa72241240af99ded81118e9
+ TODO: check
CVE-2015-5724
RESERVED
CVE-2015-5723
More information about the Secure-testing-commits
mailing list