[Secure-testing-commits] r38039 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Dec 2 14:18:44 UTC 2015


Author: carnil
Date: 2015-12-02 14:18:44 +0000 (Wed, 02 Dec 2015)
New Revision: 38039

Modified:
   data/CVE/list
Log:
Add shellinabox issue, CVE is requested

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-12-02 14:03:52 UTC (rev 38038)
+++ data/CVE/list	2015-12-02 14:18:44 UTC (rev 38039)
@@ -1,3 +1,7 @@
+CVE-2015-XXXX [DNS rebinding attack due to HTTP fallback]
+	- shellinabox <unfixed>
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/12/02/6
+	TODO: check
 CVE-2015-8377
 	RESERVED
 CVE-2015-XXXX [Avoid unbounded SFTP extended attribute key/values]




More information about the Secure-testing-commits mailing list