[Secure-testing-commits] r42681 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jun 22 05:45:34 UTC 2016


Author: carnil
Date: 2016-06-22 05:45:34 +0000 (Wed, 22 Jun 2016)
New Revision: 42681

Modified:
   data/CVE/list
Log:
Add CVE-2016-4985/ironic

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-06-22 04:19:09 UTC (rev 42680)
+++ data/CVE/list	2016-06-22 05:45:34 UTC (rev 42681)
@@ -2115,8 +2115,10 @@
 	RESERVED
 	NOT-FOR-US: Jenkins plugin
 	NOTE: https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2016-06-20
-CVE-2016-4985
+CVE-2016-4985 [Ironic node information including credentials exposed to unathenticated users]
 	RESERVED
+	- ironic <unfixed>
+	NOTE: Affects >=2014.2, >=4.0.0 <=4.2.4, >=4.3.0 <=5.1.1
 CVE-2016-4984
 	RESERVED
 	- openldap <not-affected> (Red Hat-specific)




More information about the Secure-testing-commits mailing list