[Secure-testing-commits] r58695 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Dec 19 18:13:17 UTC 2017


Author: jmm
Date: 2017-12-19 18:13:17 +0000 (Tue, 19 Dec 2017)
New Revision: 58695

Modified:
   data/CVE/list
Log:
ruby2.3 postponed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-19 16:28:06 UTC (rev 58694)
+++ data/CVE/list	2017-12-19 18:13:17 UTC (rev 58695)
@@ -5814,6 +5814,7 @@
 CVE-2017-17405 (Ruby before 2.4.3 allows Net::FTP command injection. Net::FTP#get, ...)
 	- ruby2.5 <unfixed> (bug #884437)
 	- ruby2.3 <unfixed> (bug #884438)
+	[stretch] - ruby2.3 <postponed> (Minor issue, can be fixed along in a future update)
 	- ruby2.1 <removed>
 	- ruby1.9.1 <removed>
 	- ruby1.8 <removed>




More information about the Secure-testing-commits mailing list