[Secure-testing-commits] r34978 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jun 16 20:18:45 UTC 2015


Author: carnil
Date: 2015-06-16 20:18:45 +0000 (Tue, 16 Jun 2015)
New Revision: 34978

Modified:
   data/CVE/list
Log:
Add CVE-2015-3226/rails

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-06-16 20:13:52 UTC (rev 34977)
+++ data/CVE/list	2015-06-16 20:18:45 UTC (rev 34978)
@@ -3298,8 +3298,12 @@
 	- ruby-activesupport-3.2 <removed>
 	- ruby-activesupport-2.3 <removed>
 	TODO: check if complete
-CVE-2015-3226
+CVE-2015-3226 [XSS Vulnerability in ActiveSupport::JSON.encode]
 	RESERVED
+	- rails <unfixed>
+	- ruby-activesupport-3.2 <removed>
+	- ruby-activesupport-2.3 <removed>
+	TODO: check if complete
 CVE-2015-3225 [Denial of Service]
 	RESERVED
 	- ruby-rack <unfixed>




More information about the Secure-testing-commits mailing list