[Secure-testing-commits] r34394 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu May 21 20:23:28 UTC 2015


Author: carnil
Date: 2015-05-21 20:23:28 +0000 (Thu, 21 May 2015)
New Revision: 34394

Modified:
   data/CVE/list
Log:
Add CVE-2015-3982/python-django

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-05-21 17:41:34 UTC (rev 34393)
+++ data/CVE/list	2015-05-21 20:23:28 UTC (rev 34394)
@@ -179,8 +179,10 @@
 	RESERVED
 CVE-2015-3983 (The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not include the ...)
 	- pcs <itp> (bug #706522)
-CVE-2015-3982
+CVE-2015-3982 [Fixed session flushing in the cached_db backend]
 	RESERVED
+	- python-django <not-affected> (Only affects 1.8 and development branch)
+	NOTE: https://www.djangoproject.com/weblog/2015/may/20/security-release/
 CVE-2015-3981 (SAP NetWeaver RFC SDK allows attackers to obtain sensitive information ...)
 	TODO: check
 CVE-2015-3980 (SQL injection vulnerability in the Business Rules Framework ...)




More information about the Secure-testing-commits mailing list