[Secure-testing-commits] r43939 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Aug 11 19:46:57 UTC 2016


Author: jmm
Date: 2016-08-11 19:46:57 +0000 (Thu, 11 Aug 2016)
New Revision: 43939

Modified:
   data/CVE/list
Log:
new rails issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-08-11 19:12:08 UTC (rev 43938)
+++ data/CVE/list	2016-08-11 19:46:57 UTC (rev 43939)
@@ -946,8 +946,14 @@
 	RESERVED
 CVE-2016-6317
 	RESERVED
+	- rails <unfixed>
+	[jessie] - rails <not-affected> (Vulnerable code not present, introduced in 4.2)
+	[wheezy] - rails <not-affected> (Vulnerable code not present, is only a transitional package and introduced in 4.2 anyway)
 CVE-2016-6316
 	RESERVED
+	- rails <unfixed> (low)
+	[wheezy] - rails <not-affected> (Vulnerable code not present, is only a transitional package)
+	TODO: Rails in wheezy uses several split source packages
 CVE-2016-6315
 	RESERVED
 CVE-2016-6314




More information about the Secure-testing-commits mailing list