[Secure-testing-commits] r35254 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jun 30 19:51:42 UTC 2015


Author: carnil
Date: 2015-06-30 19:51:42 +0000 (Tue, 30 Jun 2015)
New Revision: 35254

Modified:
   data/CVE/list
Log:
Better description, and remove empty line from previous commit

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-06-30 19:34:51 UTC (rev 35253)
+++ data/CVE/list	2015-06-30 19:51:42 UTC (rev 35254)
@@ -2491,10 +2491,9 @@
 	- ruby2.1 <not-affected> (Incomplete fix not applied)
 	- ruby2.2 <not-affected> (Incomplete fix not applied)
 	- jruby <not-affected> (Incomplete fix not applied)
-
-	NOTE: Original patch (https://github.com/rubygems/rubygems/commit/6bbee35)
-	NOTE: introduced another vulnerability, assigned CVE-2015-4020. So this
-	NOTE: only applies if 6bbee35 was applied only.
+	NOTE: Original patch https://github.com/rubygems/rubygems/commit/6bbee35
+	NOTE: introduced another vulnerability, assigned CVE-2015-4020. This CVE
+	NOTE: only applies if only 6bbee35 was applied without 5c7bfb5
 	NOTE: https://github.com/rubygems/rubygems/commit/5c7bfb5
 CVE-2015-4019
 	RESERVED




More information about the Secure-testing-commits mailing list