[Secure-testing-commits] r33266 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Mon Mar 30 21:10:17 UTC 2015


Author: sectracker
Date: 2015-03-30 21:10:17 +0000 (Mon, 30 Mar 2015)
New Revision: 33266

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-03-30 21:04:41 UTC (rev 33265)
+++ data/CVE/list	2015-03-30 21:10:17 UTC (rev 33266)
@@ -125,6 +125,7 @@
 CVE-2015-2701 (Cross-site request forgery (CSRF) vulnerability in CS-Cart 4.2.4 ...)
 	NOT-FOR-US: CS-Cart
 CVE-2014-9713 [slapd: dangerous access rule in default config]
+	{DSA-3209-1}
 	- openldap 2.4.40-2 (bug #761406)
 CVE-2014-9711 (Multiple cross-site scripting (XSS) vulnerabilities in the ...)
 	NOT-FOR-US: Websense
@@ -3437,6 +3438,7 @@
 	- libidn <unfixed> (unimportant)
 	NOTE: Mis-use of an API (even if poorly documented) is hardly a security issue
 CVE-2015-1545 (The deref_parseCtrl function in servers/slapd/overlays/deref.c in ...)
+	{DSA-3209-1}
 	- openldap 2.4.40-4 (bug #776988)
 	[wheezy] - openldap <no-dsa> (Minor issue)
 	[squeeze] - openldap <no-dsa> (Minor issue)
@@ -40096,6 +40098,7 @@
 	NOTE: https://github.com/joyent/node/commit/085dd30e93da67362f044ad1b3b6b2d997064692
 	NOTE: http://blog.nodejs.org/2013/10/18/node-v0-10-21-stable/
 CVE-2013-4449 (The rwm overlay in OpenLDAP 2.4.23, 2.4.36, and earlier does not ...)
+	{DSA-3209-1}
 	- openldap 2.4.39-1.1 (low; bug #729367)
 	[wheezy] - openldap <no-dsa> (Minor issue)
 	[squeeze] - openldap <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list