[Secure-testing-commits] r32673 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri Mar 6 10:14:31 UTC 2015


Author: jmm
Date: 2015-03-06 10:14:02 +0000 (Fri, 06 Mar 2015)
New Revision: 32673

Modified:
   data/CVE/list
Log:
bug filed for 389


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-03-06 09:22:23 UTC (rev 32672)
+++ data/CVE/list	2015-03-06 10:14:02 UTC (rev 32673)
@@ -10349,7 +10349,7 @@
 	RESERVED
 CVE-2014-8112 [password hashing bypassed when "nsslapd-unhashed-pw-switch" is set to off]
 	RESERVED
-	- 389-ds-base <unfixed>
+	- 389-ds-base <unfixed> (bug #779909)
 CVE-2014-8111
 	RESERVED
 CVE-2014-8110 (Multiple cross-site scripting (XSS) vulnerabilities in the web based ...)
@@ -10375,8 +10375,7 @@
 	NOTE: https://lists.nongnu.org/archive/html/qemu-devel/2014-12/msg00508.html
 CVE-2014-8105 [information disclosure through 'cn=changelog' subtree]
 	RESERVED
-	- 389-ds-base <unfixed>
-	TODO: check
+	- 389-ds-base <unfixed> (bug #779909)
 CVE-2014-8103 (X.Org Server (aka xserver and xorg-server) 1.15.0 through 1.16.x ...)
 	- xorg-server 2:1.16.2.901-1
 	[wheezy] - xorg-server <not-affected> (Introduced in 1.15.0)




More information about the Secure-testing-commits mailing list