[Secure-testing-commits] r33105 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Mar 24 07:28:34 UTC 2015


Author: carnil
Date: 2015-03-24 07:27:46 +0000 (Tue, 24 Mar 2015)
New Revision: 33105

Modified:
   data/CVE/list
Log:
Add two docker.io issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-03-24 06:43:09 UTC (rev 33104)
+++ data/CVE/list	2015-03-24 07:27:46 UTC (rev 33105)
@@ -32634,10 +32634,14 @@
 	[wheezy] - linux <not-affected> (Introduced in 3.5)
 	- linux-2.6 <not-affected> (Introduced in 3.5)
 	NOTE: fix: http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=a08d3b3b99efd509133946056531cdf8f3a0c09b
-CVE-2014-0048
+CVE-2014-0048 [multiple files downloaded over HTTP and executed or used unsafely]
 	RESERVED
-CVE-2014-0047
+	- docker.io <unfixed>
+	NOTE: According to Red Hat bug no longer present in 1.5
+CVE-2014-0047 [multiple temporary file creation vulnerabilities]
 	RESERVED
+	- docker.io <unfixed>
+	NOTE: According to Red Hat bug no longer present in 1.5
 CVE-2014-0046 (Cross-site scripting (XSS) vulnerability in the link-to helper in ...)
 	NOT-FOR-US: ember.js
 CVE-2014-0045 (The needSamples method in AudioOutputSpeech.cpp in the client in ...)




More information about the Secure-testing-commits mailing list