[Secure-testing-commits] r31598 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jan 22 15:28:43 UTC 2015


Author: carnil
Date: 2015-01-22 15:28:43 +0000 (Thu, 22 Jan 2015)
New Revision: 31598

Modified:
   data/CVE/list
Log:
Add two kde-workspace issues, unckecked, left TODO

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-22 15:26:40 UTC (rev 31597)
+++ data/CVE/list	2015-01-22 15:28:43 UTC (rev 31598)
@@ -407,6 +407,12 @@
 	NOT-FOR-US: SAP NetWeaver
 CVE-2014-9593 (Apache CloudStack before 4.3.2 and 4.4.x before 4.4.2 allows remote ...)
 	NOT-FOR-US: Apache CloudStack
+CVE-2015-1308 [X11 clients can eavesdrop input events while screen is locked]
+	- kde-workspace <unfixed>
+	TODO: check
+CVE-2015-1307 [plasma-workspace: Network access from screen locker]
+	- kde-workspace <unfixed>
+	TODO: check
 CVE-2015-1306 [vulnerability in the web interface]
 	- sympa 6.1.23~dfsg-2
 	NOTE: https://www.sympa.org/security_advisories#security_breaches_in_newsletter_posting




More information about the Secure-testing-commits mailing list