[Secure-testing-commits] r35244 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jun 30 10:16:14 UTC 2015


Author: carnil
Date: 2015-06-30 10:16:14 +0000 (Tue, 30 Jun 2015)
New Revision: 35244

Modified:
   data/CVE/list
Log:
Add yubiserver CVEs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-06-30 09:47:46 UTC (rev 35243)
+++ data/CVE/list	2015-06-30 10:16:14 UTC (rev 35244)
@@ -12208,10 +12208,12 @@
 	- wesnoth-1.12 1:1.12.2-1
 	- wesnoth-1.10 1:1.10.7-2
 	- wesnoth-1.8 <removed>
-CVE-2015-0843
+CVE-2015-0843 [Buffer overflows due to misuse of sprintf]
 	RESERVED
-CVE-2015-0842
+	- yubiserver 0.6-1
+CVE-2015-0842 [SQL injection issues (potential auth bypass)]
 	RESERVED
+	- yubiserver 0.6-1
 CVE-2015-0841 [off-by-one buffer overflow in Listener::checkActivity in libcapsinetwork/monopd]
 	RESERVED
 	- libcapsinetwork <removed> (bug #781044; unimportant)




More information about the Secure-testing-commits mailing list