[Secure-testing-commits] r32553 - data/CVE

Thorsten Alteholz alteholz at moszumanska.debian.org
Sat Feb 28 18:36:13 UTC 2015


Author: alteholz
Date: 2015-02-28 18:36:12 +0000 (Sat, 28 Feb 2015)
New Revision: 32553

Modified:
   data/CVE/list
Log:
mark CVE-2012-6687 for libfcgi as no-dsa, follow the decision of the security team for Wheezy

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-28 16:22:55 UTC (rev 32552)
+++ data/CVE/list	2015-02-28 18:36:12 UTC (rev 32553)
@@ -1629,6 +1629,7 @@
 CVE-2012-6687 (FastCGI (aka fcgi and libfcgi) 2.4.0 allows remote attackers to cause ...)
 	- libfcgi 2.4.0-8.3 (bug #681591)
 	[wheezy] - libfcgi <no-dsa> (Minor issue)
+	[squeeze] - libfcgi <no-dsa> (Minor issue)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/02/06/4
 CVE-2012-XXXX [Stack-based buffer overflow when scanning directory structure for absolute path entries]
 	- fuseiso <unfixed> (bug #779047)




More information about the Secure-testing-commits mailing list