[Secure-testing-commits] r55627 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Sep 10 16:00:09 UTC 2017


Author: carnil
Date: 2017-09-10 16:00:09 +0000 (Sun, 10 Sep 2017)
New Revision: 55627

Modified:
   data/CVE/list
Log:
qpid-cpp removed from unstable

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-10 15:28:45 UTC (rev 55626)
+++ data/CVE/list	2017-09-10 16:00:09 UTC (rev 55627)
@@ -98268,7 +98268,7 @@
 	NOTE: CVE is for incomplete fix for CVE-2015-0203, which is not fixed in Debian
 	NOTE: https://issues.apache.org/jira/browse/QPID-6310
 CVE-2015-0223 (Unspecified vulnerability in Apache Qpid 0.30 and earlier allows ...)
-	- qpid-cpp <unfixed> (bug #772794)
+	- qpid-cpp <removed> (bug #772794)
 	[wheezy] - qpid-cpp <no-dsa> (Minor issue)
 	NOTE: https://issues.apache.org/jira/browse/QPID-6325
 CVE-2015-0222 (ModelMultipleChoiceField in Django 1.6.x before 1.6.10 and 1.7.x ...)
@@ -98346,7 +98346,7 @@
 	NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=37580f43b5a39f5f4e920d17273fab9713d3a744
 CVE-2015-0203
 	RESERVED
-	- qpid-cpp <unfixed> (bug #775359)
+	- qpid-cpp <removed> (bug #775359)
 	[wheezy] - qpid-cpp <no-dsa> (Minor issue)
 CVE-2015-0202 (The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows ...)
 	- subversion 1.8.10-6
@@ -112050,7 +112050,7 @@
 CVE-2014-3630
 	RESERVED
 CVE-2014-3629 (XML external entity (XXE) vulnerability in the XML Exchange module in ...)
-	- qpid-cpp <unfixed> (low; bug #772794)
+	- qpid-cpp <removed> (low; bug #772794)
 	[wheezy] - qpid-cpp <no-dsa> (Minor issue)
 	NOTE: https://issues.apache.org/jira/secure/attachment/12680198/QPID-6218.patch
 CVE-2014-3628 (Cross-site scripting (XSS) vulnerability in the Admin UI Plugin / ...)
@@ -122259,7 +122259,7 @@
 	NOTE: http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-44606
 CVE-2014-0212 [on-demand ACL policy loading enables a denial of service by consuming all available file descriptors]
 	RESERVED
-	- qpid-cpp <unfixed> (low; bug #772794)
+	- qpid-cpp <removed> (low; bug #772794)
 	[wheezy] - qpid-cpp <no-dsa> (Minor issue)
 	NOTE: Upstream issue: https://issues.apache.org/jira/browse/QPID-4938
 	NOTE: Commit which does no longer build acl support only as plugin: https://svn.apache.org/viewvc?view=revision&revision=r1494697
@@ -147539,13 +147539,13 @@
 	- linux-2.6 <removed>
 	- linux 3.2.35-1
 CVE-2012-4460 (The serializing/deserializing functions in the qpid::framing::Buffer ...)
-	- qpid-cpp <unfixed> (low; bug #772794)
+	- qpid-cpp <removed> (low; bug #772794)
 	[wheezy] - qpid-cpp <no-dsa> (Minor issue)
 CVE-2012-4459 (Integer overflow in the qpid::framing::Buffer::checkAvailable function ...)
-	- qpid-cpp <unfixed> (low; bug #772794)
+	- qpid-cpp <removed> (low; bug #772794)
 	[wheezy] - qpid-cpp <no-dsa> (Minor issue)
 CVE-2012-4458 (The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote ...)
-	- qpid-cpp <unfixed> (low; bug #772794)
+	- qpid-cpp <removed> (low; bug #772794)
 	[wheezy] - qpid-cpp <no-dsa> (Minor issue)
 CVE-2012-4457 (OpenStack Keystone Essex before 2012.1.2 and Folsom before folsom-3 ...)
 	- keystone 2012.1.1-9 (bug #689210)
@@ -147585,7 +147585,7 @@
 	- tiff3 3.9.6-9 (bug #688944)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=860198
 CVE-2012-4446 (The default configuration for Apache Qpid 0.20 and earlier, when the ...)
-	- qpid-cpp <unfixed> (low; bug #772794)
+	- qpid-cpp <removed> (low; bug #772794)
 	[wheezy] - qpid-cpp <no-dsa> (Minor issue)
 CVE-2012-4445 (Heap-based buffer overflow in the eap_server_tls_process_fragment ...)
 	{DSA-2557-1}




More information about the Secure-testing-commits mailing list