[Secure-testing-commits] r35788 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jul 30 06:54:58 UTC 2015


Author: carnil
Date: 2015-07-30 06:54:58 +0000 (Thu, 30 Jul 2015)
New Revision: 35788

Modified:
   data/CVE/list
Log:
Add CVE-2015-3283 and CVE-2015-3284

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-07-30 06:52:40 UTC (rev 35787)
+++ data/CVE/list	2015-07-30 06:54:58 UTC (rev 35788)
@@ -6169,10 +6169,15 @@
 	RESERVED
 CVE-2015-3285
 	RESERVED
-CVE-2015-3284
+CVE-2015-3284 [pioctls leak kernel memory contents]
 	RESERVED
-CVE-2015-3283
+	- openafs <unfixed>
+	[squeeze] - openafs <not-affected> (Only 1.6.0 trough 1.6.12)
+	NOTE: http://www.openafs.org/pages/security/OPENAFS-SA-2015-003.txt
+CVE-2015-3283 [bos commands can be spoofed, including some which alter server state]
 	RESERVED
+	- openafs <unfixed>
+	NOTE: http://www.openafs.org/pages/security/OPENAFS-SA-2015-002.txt
 CVE-2015-3282 [vos leaks stack data onto the wire in the clear when creating vldb entries]
 	RESERVED
 	- openafs <unfixed>




More information about the Secure-testing-commits mailing list