[Secure-testing-commits] r42759 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jun 23 18:56:52 UTC 2016


Author: carnil
Date: 2016-06-23 18:56:52 +0000 (Thu, 23 Jun 2016)
New Revision: 42759

Modified:
   data/CVE/list
Log:
Add CVE-2016-4972

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-06-23 17:48:39 UTC (rev 42758)
+++ data/CVE/list	2016-06-23 18:56:52 UTC (rev 42759)
@@ -2258,8 +2258,14 @@
 	RESERVED
 CVE-2016-4973
 	RESERVED
-CVE-2016-4972
+CVE-2016-4972 [RCE vulnerability in Openstack Murano using insecure YAML tags]
 	RESERVED
+	- murano <unfixed>
+	NOTE: Affects: Murano: <=2015.1.1; <=1.0.2; ==2.0.0
+	- murano-dashboard <unfixed>
+	NOTE: Affects: Murano-dashboard: <=2015.1.1; <=1.0.2; ==2.0.0
+	- python-muranoclient <unfixed>
+	NOTE: Affects: Python-muranoclient: <=0.7.2; >=0.8.0<=0.8.4
 CVE-2016-4971
 	RESERVED
 	- wget 1.18-1 (bug #827003)




More information about the Secure-testing-commits mailing list