[Secure-testing-commits] r36192 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Aug 19 19:22:11 UTC 2015


Author: jmm
Date: 2015-08-19 19:22:11 +0000 (Wed, 19 Aug 2015)
New Revision: 36192

Modified:
   data/CVE/list
Log:
kfreebsd unimportant
mojorra n/a


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-08-19 19:14:32 UTC (rev 36191)
+++ data/CVE/list	2015-08-19 19:22:11 UTC (rev 36192)
@@ -82358,7 +82358,7 @@
 CVE-2011-4368 (Cross-site scripting (XSS) vulnerability in Remote Development ...)
 	NOT-FOR-US: Adobe Cold Fusion
 CVE-2011-4367 (Multiple directory traversal vulnerabilities in MyFaces JavaServer ...)
-	- mojarra <undetermined>
+	- mojarra <not-affected> (The Debian package only ships some API classes)
 CVE-2011-4366
 	RESERVED
 	NOT-FOR-US: ** REJECT ** duplicate of CVE-2011-4090
@@ -88490,9 +88490,10 @@
 	- kfreebsd-9 <removed> (low; bug #684072)
 	[squeeze] - kfreebsd-9 <no-dsa> (Minor issue)
 	[wheezy] - kfreebsd-9 <no-dsa> (Minor issue)
-	- kfreebsd-10 <unfixed> (low)
+	- kfreebsd-10 <unfixed> (unimportant)
 	[jessie] - kfreebsd-10 <no-dsa> (Minor issue)
 	NOTE: http://www.mh-sec.de/downloads/mh-RA_flooding_CVE-2010-multiple.txt
+        NOTE: Starting with stretch kfreebsd is no longer supported
 CVE-2011-2392
 	RESERVED
 CVE-2011-2391 (The IPv6 implementation in the kernel in Apple iOS before 7 allows ...)




More information about the Secure-testing-commits mailing list