[Secure-testing-commits] r55627 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sun Sep 10 16:00:09 UTC 2017
Author: carnil
Date: 2017-09-10 16:00:09 +0000 (Sun, 10 Sep 2017)
New Revision: 55627
Modified:
data/CVE/list
Log:
qpid-cpp removed from unstable
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-09-10 15:28:45 UTC (rev 55626)
+++ data/CVE/list 2017-09-10 16:00:09 UTC (rev 55627)
@@ -98268,7 +98268,7 @@
NOTE: CVE is for incomplete fix for CVE-2015-0203, which is not fixed in Debian
NOTE: https://issues.apache.org/jira/browse/QPID-6310
CVE-2015-0223 (Unspecified vulnerability in Apache Qpid 0.30 and earlier allows ...)
- - qpid-cpp <unfixed> (bug #772794)
+ - qpid-cpp <removed> (bug #772794)
[wheezy] - qpid-cpp <no-dsa> (Minor issue)
NOTE: https://issues.apache.org/jira/browse/QPID-6325
CVE-2015-0222 (ModelMultipleChoiceField in Django 1.6.x before 1.6.10 and 1.7.x ...)
@@ -98346,7 +98346,7 @@
NOTE: https://git.openssl.org/gitweb/?p=openssl.git;a=commit;h=37580f43b5a39f5f4e920d17273fab9713d3a744
CVE-2015-0203
RESERVED
- - qpid-cpp <unfixed> (bug #775359)
+ - qpid-cpp <removed> (bug #775359)
[wheezy] - qpid-cpp <no-dsa> (Minor issue)
CVE-2015-0202 (The mod_dav_svn server in Subversion 1.8.0 through 1.8.11 allows ...)
- subversion 1.8.10-6
@@ -112050,7 +112050,7 @@
CVE-2014-3630
RESERVED
CVE-2014-3629 (XML external entity (XXE) vulnerability in the XML Exchange module in ...)
- - qpid-cpp <unfixed> (low; bug #772794)
+ - qpid-cpp <removed> (low; bug #772794)
[wheezy] - qpid-cpp <no-dsa> (Minor issue)
NOTE: https://issues.apache.org/jira/secure/attachment/12680198/QPID-6218.patch
CVE-2014-3628 (Cross-site scripting (XSS) vulnerability in the Admin UI Plugin / ...)
@@ -122259,7 +122259,7 @@
NOTE: http://git.moodle.org/gw?p=moodle.git&a=search&h=HEAD&st=commit&s=MDL-44606
CVE-2014-0212 [on-demand ACL policy loading enables a denial of service by consuming all available file descriptors]
RESERVED
- - qpid-cpp <unfixed> (low; bug #772794)
+ - qpid-cpp <removed> (low; bug #772794)
[wheezy] - qpid-cpp <no-dsa> (Minor issue)
NOTE: Upstream issue: https://issues.apache.org/jira/browse/QPID-4938
NOTE: Commit which does no longer build acl support only as plugin: https://svn.apache.org/viewvc?view=revision&revision=r1494697
@@ -147539,13 +147539,13 @@
- linux-2.6 <removed>
- linux 3.2.35-1
CVE-2012-4460 (The serializing/deserializing functions in the qpid::framing::Buffer ...)
- - qpid-cpp <unfixed> (low; bug #772794)
+ - qpid-cpp <removed> (low; bug #772794)
[wheezy] - qpid-cpp <no-dsa> (Minor issue)
CVE-2012-4459 (Integer overflow in the qpid::framing::Buffer::checkAvailable function ...)
- - qpid-cpp <unfixed> (low; bug #772794)
+ - qpid-cpp <removed> (low; bug #772794)
[wheezy] - qpid-cpp <no-dsa> (Minor issue)
CVE-2012-4458 (The AMQP type decoder in Apache Qpid 0.20 and earlier allows remote ...)
- - qpid-cpp <unfixed> (low; bug #772794)
+ - qpid-cpp <removed> (low; bug #772794)
[wheezy] - qpid-cpp <no-dsa> (Minor issue)
CVE-2012-4457 (OpenStack Keystone Essex before 2012.1.2 and Folsom before folsom-3 ...)
- keystone 2012.1.1-9 (bug #689210)
@@ -147585,7 +147585,7 @@
- tiff3 3.9.6-9 (bug #688944)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=860198
CVE-2012-4446 (The default configuration for Apache Qpid 0.20 and earlier, when the ...)
- - qpid-cpp <unfixed> (low; bug #772794)
+ - qpid-cpp <removed> (low; bug #772794)
[wheezy] - qpid-cpp <no-dsa> (Minor issue)
CVE-2012-4445 (Heap-based buffer overflow in the eap_server_tls_process_fragment ...)
{DSA-2557-1}
More information about the Secure-testing-commits
mailing list