[Secure-testing-commits] r36191 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Aug 19 19:14:32 UTC 2015


Author: jmm
Date: 2015-08-19 19:14:32 +0000 (Wed, 19 Aug 2015)
New Revision: 36191

Modified:
   data/CVE/list
Log:
libspring-java bug
gnome-orca negligable


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-08-19 19:01:33 UTC (rev 36190)
+++ data/CVE/list	2015-08-19 19:14:32 UTC (rev 36191)
@@ -8609,10 +8609,9 @@
 	RESERVED
 CVE-2015-3192
 	RESERVED
-	- libspring-java <undetermined>
+	- libspring-java <unfixed> (bug #796137)
 	NOTE: https://pivotal.io/security/cve-2015-3192
 	NOTE: https://jira.spring.io/browse/SPR-13136
-	TODO: check
 CVE-2015-3191
 	RESERVED
 CVE-2015-3190
@@ -51767,10 +51766,8 @@
 	- subversion <not-affected> (only affects 1.8.0 and 1.8.1)
 CVE-2013-4245 [Arbitrary code execution due to insecure CWD Python module load]
 	RESERVED
-	- gnome-orca <unfixed>
-	[jessie] - gnome-orca <no-dsa> (Minor issue)
-	[wheezy] - gnome-orca <no-dsa> (Minor issue)
-	[squeeze] - gnome-orca <no-dsa> (Minor issue)
+	- gnome-orca <unfixed> (unimportant)
+	NOTE:  Negligable security impact
 CVE-2013-4244 (The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier ...)
 	{DSA-2744-1}
 	- tiff 4.0.3-3




More information about the Secure-testing-commits mailing list