[Secure-testing-commits] r35191 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jun 27 20:46:07 UTC 2015


Author: carnil
Date: 2015-06-27 20:46:07 +0000 (Sat, 27 Jun 2015)
New Revision: 35191

Modified:
   data/CVE/list
Log:
Update status for CVE-2015-3900/ruby1.9.1

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-06-27 20:15:03 UTC (rev 35190)
+++ data/CVE/list	2015-06-27 20:46:07 UTC (rev 35191)
@@ -2795,7 +2795,7 @@
 	- rubygems <not-affected> (Affects versions between 2.0 and 2.4.6)
 	- libgems-ruby <not-affected> (Affects versions between 2.0 and 2.4.6)
 	- ruby1.8 <not-affected> (Vulnerable code not present)
-	- ruby1.9.1 <removed>
+	- ruby1.9.1 <not-affected> (Bundles 1.8.23, vulnerable code introduced in later 1.9.1 versions)
 	- ruby2.1 <unfixed> (bug #790119)
 	- ruby2.2 <unfixed> (bug #790111)
 	- jruby 1.7.20.1-2




More information about the Secure-testing-commits mailing list