[Secure-testing-commits] r35520 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jul 16 19:17:19 UTC 2015


Author: carnil
Date: 2015-07-16 19:17:18 +0000 (Thu, 16 Jul 2015)
New Revision: 35520

Modified:
   data/CVE/list
Log:
Update CVE-2015-3185/apache2 for wheezy

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-07-16 18:56:56 UTC (rev 35519)
+++ data/CVE/list	2015-07-16 19:17:18 UTC (rev 35520)
@@ -6064,10 +6064,12 @@
 CVE-2015-3185 [Replacement of ap_some_auth_required with new ap_some_authn_required and ap_force_authn hook]
 	RESERVED
 	- apache2 <unfixed>
+	[wheezy] - apache2 <not-affected> (Bug introduced during 2.4 development)
 	[squeeze] - apache2 <not-affected> (Bug introduced during 2.4 development)
 	NOTE: https://www.apache.org/dist/httpd/Announcement2.4.txt
 	NOTE: https://www.apache.org/dist/httpd/CHANGES_2.4.16
 	NOTE: http://svn.apache.org/viewvc?view=revision&revision=1684525
+	NOTE: Behavior changed in 2.4.x refactoring, API no longer usable in 2.4.x
 CVE-2015-3184
 	RESERVED
 CVE-2015-3183 [Fix chunk header parsing defect]




More information about the Secure-testing-commits mailing list