[Secure-testing-commits] r31965 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Feb 4 18:57:31 UTC 2015


Author: jmm
Date: 2015-02-04 18:57:31 +0000 (Wed, 04 Feb 2015)
New Revision: 31965

Modified:
   data/CVE/list
   data/next-point-update.txt
Log:
vsftpd unimportant
phpbb3 spus
matplotlib no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-04 18:55:43 UTC (rev 31964)
+++ data/CVE/list	2015-02-04 18:57:31 UTC (rev 31965)
@@ -84,8 +84,9 @@
 	[squeeze] - archmage <no-dsa> (Minor issue)
 	[wheezy] - archmage <no-dsa> (Minor issue)
 CVE-2015-1419 (Unspecified vulnerability in vsftp 3.0.2 and earlier allows remote ...)
-	- vsftpd <unfixed> (bug #776922)
+	- vsftpd <unfixed> (unimportant; bug #776922)
 	NOTE: http://seclists.org/oss-sec/2015/q1/389
+        NOTE: Not a real security feature according the manpage and upstream
 CVE-2015-1418
 	RESERVED
 CVE-2015-1417
@@ -44759,6 +44760,8 @@
 CVE-2013-1424 [matplotlib buffer overrun]
 	RESERVED
 	- matplotlib <unfixed> (low; bug #775691)
+	[wheezy] - matplotlib <no-dsa> (Minor issue)
+	[squeeze] - matplotlib <no-dsa> (Minor issue)
 CVE-2013-1423 ((1) contrib/gforge-3.0-cronjobs.patch, (2) cronjobs/homedirs.php, (3) ...)
 	{DSA-2633-1}
 	- fusionforge 5.2.1+20130227-1

Modified: data/next-point-update.txt
===================================================================
--- data/next-point-update.txt	2015-02-04 18:55:43 UTC (rev 31964)
+++ data/next-point-update.txt	2015-02-04 18:57:31 UTC (rev 31965)
@@ -21,3 +21,7 @@
 	[wheezy] - phonefsod 0.1+git20110827-3+deb7u1
 CVE-2014-9328
 	[wheezy] - clamav 0.98.6+dfsg-0+deb7u1
+CVE-2015-1432
+	[wheezy] - phpbb3 3.0.10-4+deb7u2
+CVE-2015-1431
+	[wheezy] - phpbb3 3.0.10-4+deb7u2




More information about the Secure-testing-commits mailing list