[Secure-testing-commits] r35443 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Jul 13 05:41:01 UTC 2015


Author: carnil
Date: 2015-07-13 05:41:01 +0000 (Mon, 13 Jul 2015)
New Revision: 35443

Modified:
   data/CVE/list
Log:
Update references for squid3 issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-07-13 05:06:39 UTC (rev 35442)
+++ data/CVE/list	2015-07-13 05:41:01 UTC (rev 35443)
@@ -272,7 +272,9 @@
 CVE-2015-XXXX [Do not blindly forward cache peer CONNECT responses]
 	- squid <removed>
 	- squid3 <unfixed>
-	NOTE: http://www.squid-cache.org/Versions/v3/3.5/changesets/squid-3.5-13856.patch
+	NOTE: http://www.squid-cache.org/Versions/v3/3.5/changesets/squid-3.5-13856.patch (3.5)
+	NOTE: http://www.squid-cache.org/Versions/v3/3.4/changesets/squid-3.4-13225.patch (3.4)
+	NOTE: http://www.squid-cache.org/Advisories/SQUID-2015_2.txt
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/07/06/8
 	TODO: check
 CVE-2015-5380 (The Utf8DecoderBase::WriteUtf16Slow function in unicode-decoder.cc in ...)




More information about the Secure-testing-commits mailing list