[Secure-testing-commits] r39173 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Mon Jan 25 21:29:35 UTC 2016
Author: carnil
Date: 2016-01-25 21:29:35 +0000 (Mon, 25 Jan 2016)
New Revision: 39173
Modified:
data/CVE/list
Log:
Add CVE-2016-0753, kept TODO
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-01-25 21:24:46 UTC (rev 39172)
+++ data/CVE/list 2016-01-25 21:29:35 UTC (rev 39173)
@@ -3703,8 +3703,16 @@
RESERVED
CVE-2016-0754
RESERVED
-CVE-2016-0753
+CVE-2016-0753 [Possible Input Validation Circumvention in Active Model]
RESERVED
+ - rails <unfixed>
+ [wheezy] - rails <not-affected> (Vulnerable code not present, is only a transitional package)
+ - ruby-activerecord-3.2 <removed>
+ - ruby-activerecord-2.3 <removed>
+ - ruby-activesupport-3.2 <removed>
+ - ruby-activesupport-2.3 <removed>
+ - ruby-activemodel-3.2 <removed>
+ TODO: check
CVE-2016-0752 [Possible Information Leak Vulnerability in Action View]
RESERVED
- rails <unfixed>
More information about the Secure-testing-commits
mailing list