[Secure-testing-commits] r45624 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Oct 26 14:46:00 UTC 2016


Author: carnil
Date: 2016-10-26 14:46:00 +0000 (Wed, 26 Oct 2016)
New Revision: 45624

Modified:
   data/CVE/list
Log:
Remove duplicate uglifyjs entry

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-10-26 14:44:02 UTC (rev 45623)
+++ data/CVE/list	2016-10-26 14:46:00 UTC (rev 45624)
@@ -15731,6 +15731,7 @@
 	RESERVED
 	- uglifyjs <unfixed> (unimportant)
 	NOTE: libv8 is not covered by security support
+	NOTE: https://nodesecurity.io/advisories/48
 CVE-2015-8854 [marked: regular expression denial of service]
 	RESERVED
 	- node-marked <unfixed> (unimportant)
@@ -20680,11 +20681,6 @@
 	NOTE: https://github.com/mishoo/UglifyJS2/issues/751
 	NOTE: https://nodesecurity.io/advisories/39
 	NOTE: nodejs not covered by security support
-CVE-2015-XXXX [regex DoS]
-	- uglifyjs <unfixed> (unimportant)
-	NOTE: fixed in 2.6.0
-	NOTE: https://nodesecurity.io/advisories/48
-	NOTE: nodejs not covered by security support
 CVE-2015-XXXX [root path disclosure]
 	- node-send <unfixed> (unimportant)
 	NOTE: fixed in 0.11.1




More information about the Secure-testing-commits mailing list