[Secure-testing-commits] r32580 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Mon Mar 2 16:53:17 UTC 2015
Author: carnil
Date: 2015-03-02 16:53:17 +0000 (Mon, 02 Mar 2015)
New Revision: 32580
Modified:
data/CVE/list
Log:
Add fixed version for novnc, #778618
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-03-02 16:45:01 UTC (rev 32579)
+++ data/CVE/list 2015-03-02 16:53:17 UTC (rev 32580)
@@ -1129,7 +1129,7 @@
- linux-2.6 <removed>
NOTE: Upstream fix: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=942080643bce061c3dd9d5718d3b745dcb39a8bc (v3.19-rc1)
CVE-2013-XXXX [session hijack through insecurely set session token cookies]
- - novnc <unfixed> (bug #778618)
+ - novnc 1:0.4+dfsg+1+20131010+gitf68af8af3d-4 (bug #778618)
NOTE: https://github.com/kanaka/noVNC/commit/ad941faddead705cd611921730054767a0b32dcd
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/02/17/1
CVE-2015-2091 [vulnerability involving the server config context]
More information about the Secure-testing-commits
mailing list