[Secure-testing-commits] r40262 - data/CVE

Thijs Kinkhorst thijs at moszumanska.debian.org
Wed Mar 9 09:51:53 UTC 2016


Author: thijs
Date: 2016-03-09 09:51:53 +0000 (Wed, 09 Mar 2016)
New Revision: 40262

Modified:
   data/CVE/list
Log:
two new mod_mellon issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-03-09 09:11:36 UTC (rev 40261)
+++ data/CVE/list	2016-03-09 09:51:53 UTC (rev 40262)
@@ -2286,10 +2286,12 @@
 	RESERVED
 CVE-2016-2147
 	RESERVED
-CVE-2016-2146
+CVE-2016-2146 [DOS attack (Apache worker process crash / resource exhaustion) due to missing size checks when reading POST data.]
 	RESERVED
-CVE-2016-2145
+	- libapache2-mod-auth-mellon <unfixed>
+CVE-2016-2145 [DOS attack (Apache worker process crash) due to incorrect error handling when reading POST data from client]
 	RESERVED
+	- libapache2-mod-auth-mellon <unfixed>
 CVE-2016-2144
 	RESERVED
 CVE-2016-2143




More information about the Secure-testing-commits mailing list