[Secure-testing-commits] r32004 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Feb 6 05:59:15 UTC 2015


Author: carnil
Date: 2015-02-06 05:59:15 +0000 (Fri, 06 Feb 2015)
New Revision: 32004

Modified:
   data/CVE/list
Log:
Add another openldap tempoarary item, #776988

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-06 05:56:58 UTC (rev 32003)
+++ data/CVE/list	2015-02-06 05:59:15 UTC (rev 32004)
@@ -1,5 +1,11 @@
+CVE-2015-XXXX [crashes on search with deref control and empty attr list]
+	- openldap <unfixed> (bug #776988)
+	NOTE: http://www.openldap.org/its/?findid=8027
+	NOTE: http://www.openldap.org/devel/gitweb.cgi?p=openldap.git;a=commitdiff;h=c32e74763f77675b9e144126e375977ed6dc562c
 CVE-2015-XXXX [crash in valueReturnFilter cleanup]
 	- openldap <unfixed> (bug #776991)
+	[wheezy] - openldap <not-affected> (Regression introduced in 2.4.40)
+	[squeeze] - openldap <not-affected> (Regression introduced in 2.4.40)
 	NOTE: http://www.openldap.org/its/?findid=8046
 	NOTE: http://www.openldap.org/devel/gitweb.cgi?p=openldap.git;a=commitdiff;h=2f1a2dd329b91afe561cd06b872d09630d4edb6a
 CVE-2015-1482 (Ansible Tower (aka Ansible UI) before 2.0.5 allows remote attackers to ...)




More information about the Secure-testing-commits mailing list