[Secure-testing-commits] r34401 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri May 22 03:05:47 UTC 2015


Author: carnil
Date: 2015-05-22 03:05:47 +0000 (Fri, 22 May 2015)
New Revision: 34401

Modified:
   data/CVE/list
Log:
Update three CVEs as NFU

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-05-21 21:10:14 UTC (rev 34400)
+++ data/CVE/list	2015-05-22 03:05:47 UTC (rev 34401)
@@ -3,7 +3,7 @@
 CVE-2015-4048
 	RESERVED
 CVE-2012-6691 (Multiple cross-site request forgery (CSRF) vulnerabilities in the ...)
-	TODO: check
+	NOT-FOR-US: osCMax
 CVE-2015-XXXX [remote crash/DoS - invalid packet order causes lookup of NULL pointer]
 	- pgbouncer 1.5.5-1
 	NOTE: https://github.com/pgbouncer/pgbouncer/commit/edab5be6665b9e8de66c25ba527509b229468573 (master)
@@ -69260,9 +69260,9 @@
 CVE-2012-1666 (Untrusted search path vulnerability in VMware Tools in VMware ...)
 	NOT-FOR-US: VMware Tools
 CVE-2012-1665 (Multiple SQL injection vulnerabilities in the admin panel in osCMax ...)
-	TODO: check
+	NOT-FOR-US: osCMax
 CVE-2012-1664 (Multiple cross-site scripting (XSS) vulnerabilities in the admin panel ...)
-	TODO: check
+	NOT-FOR-US: osCMax
 CVE-2012-1663 (Double free vulnerability in libgnutls in GnuTLS before 3.0.14 allows ...)
 	- gnutls28 3.0.14-1
 	- gnutls26 <not-affected> (only GNUTLS 3.0 is affected)




More information about the Secure-testing-commits mailing list