[Secure-testing-commits] r32267 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Feb 16 19:05:14 UTC 2015


Author: carnil
Date: 2015-02-16 19:05:13 +0000 (Mon, 16 Feb 2015)
New Revision: 32267

Modified:
   data/CVE/list
Log:
Reference CVE request for Henry Spencer regular expressions library issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-16 16:22:54 UTC (rev 32266)
+++ data/CVE/list	2015-02-16 19:05:13 UTC (rev 32267)
@@ -114,6 +114,7 @@
 	NOTE: No security impact in nvi/vigor
 	NOTE: http://www.kb.cert.org/vuls/id/695940
 	NOTE: https://guidovranken.wordpress.com/2015/02/04/full-disclosure-heap-overflow-in-h-spencers-regex-library-on-32-bit-systems/
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/02/16/8
 CVE-2015-XXXX [insecure storage of password]
 	- nut <unfixed> (bug #777706)
 CVE-2015-XXXX [command injection vulnerability]




More information about the Secure-testing-commits mailing list