[Secure-testing-commits] r39608 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Thu Feb 11 17:56:53 UTC 2016
Author: carnil
Date: 2016-02-11 17:56:53 +0000 (Thu, 11 Feb 2016)
New Revision: 39608
Modified:
data/CVE/list
Log:
pcs is now in Debian
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-02-11 17:00:17 UTC (rev 39607)
+++ data/CVE/list 2016-02-11 17:56:53 UTC (rev 39608)
@@ -16079,9 +16079,11 @@
CVE-2015-5191
RESERVED
CVE-2015-5190 (The pcsd web UI in PCS 0.9.139 and earlier allows remote authenticated ...)
- - pcs <itp> (bug #706522)
+ - pcs <unfixed>
+ TODO: check after it entered the archive
CVE-2015-5189 (Race condition in pcsd in PCS 0.9.139 and earlier uses a global ...)
- - pcs <itp> (bug #706522)
+ - pcs <unfixed>
+ TODO: check after it entered the archive
CVE-2015-5188 (Cross-site request forgery (CSRF) vulnerability in the Web Console ...)
NOT-FOR-US: JBoss EAP
CVE-2015-5187
@@ -19485,7 +19487,8 @@
CVE-2015-3984
RESERVED
CVE-2015-3983 (The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not include the ...)
- - pcs <itp> (bug #706522)
+ - pcs <unfixed>
+ TODO: check after it entered the archive
CVE-2015-3982 (The session.flush function in the cached_db backend in Django 1.8.x ...)
- python-django <not-affected> (Only affects 1.8 and development branch)
NOTE: https://www.djangoproject.com/weblog/2015/may/20/security-release/
@@ -25953,7 +25956,8 @@
RESERVED
NOT-FOR-US: JBoss EAP
CVE-2015-1848 (The pcs daemon (pcsd) in PCS 0.9.137 and earlier does not set the ...)
- - pcs <itp> (bug #706522)
+ - pcs <unfixed>
+ TODO: check after it entered the archive
CVE-2015-1847
RESERVED
CVE-2015-1846 (unzoo allows remote attackers to cause a denial of service (infinite ...)
More information about the Secure-testing-commits
mailing list