[Secure-testing-commits] r31774 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jan 28 04:13:53 UTC 2015


Author: carnil
Date: 2015-01-28 04:13:53 +0000 (Wed, 28 Jan 2015)
New Revision: 31774

Modified:
   data/CVE/list
Log:
Two CVEs assigned for patch

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-28 01:45:23 UTC (rev 31773)
+++ data/CVE/list	2015-01-28 04:13:53 UTC (rev 31774)
@@ -118,7 +118,7 @@
 	TODO: check
 CVE-2015-1377 [Read Mail Module Vulnerability]
 	NOT-FOR-US: Webmin
-CVE-2015-XXXX [directory traversal via file rename]
+CVE-2015-1395 [directory traversal via file rename]
 	- patch 2.7.3-1 (bug #775873)
 	[wheezy] - patch <not-affected> (Support for git-style patches added in 2.7)
 	[squeeze] - patch <not-affected> (Support for git-style patches added in 2.7)
@@ -443,7 +443,7 @@
 	NOTE: https://groups.google.com/forum/#!topic/rabbitmq-users/-3Z2FyGtXhs
 	NOTE: Fixed by: https://github.com/rabbitmq/rabbitmq-management/commit/b5a5fc31bd49ad821a655ea9e2fe920d670a62ad
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/01/21/13
-CVE-2015-XXXX [(another) directory traversal via symlinks -- incomplete fix for CVE-2015-1196]
+CVE-2015-1396 [(another) directory traversal via symlinks -- incomplete fix for CVE-2015-1196]
 	- patch 2.7.3-1 (bug #775901)
 	[wheezy] - patch <not-affected> (Not affected by CVE-2015-1196 and no incomplete fix applied)
 	[squeeze] - patch <not-affected>  (Not affected by CVE-2015-1196 and no incomplete fix applied)




More information about the Secure-testing-commits mailing list