summaryrefslogtreecommitdiffstats
path: root/data/CVE/list.2013
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2020-11-29 21:08:05 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2020-11-29 21:08:05 +0100
commit45e1c89468238e05bd1910264fa37a041decd235 (patch)
tree708d273565356fa9154adc92e6747dd0a12b2821 /data/CVE/list.2013
parent74db0bf75cdbb77751ded426da4b444f27ade090 (diff)
Track fixed version for older CVE-2013-4363/CVE-2013-4287
Diffstat (limited to 'data/CVE/list.2013')
-rw-r--r--data/CVE/list.20134
1 files changed, 2 insertions, 2 deletions
diff --git a/data/CVE/list.2013 b/data/CVE/list.2013
index b7271d421b..e97d1f3a58 100644
--- a/data/CVE/list.2013
+++ b/data/CVE/list.2013
@@ -8194,7 +8194,7 @@ CVE-2013-4365 (Heap-based buffer overflow in the fcgid_header_bucket_read functi
CVE-2013-4364 ((1) oo-analytics-export and (2) oo-analytics-import in the openshift-o ...)
NOT-FOR-US: OpenShift
CVE-2013-4363 (Algorithmic complexity vulnerability in Gem::Version::ANCHORED_VERSION ...)
- - rubygems <unfixed> (unimportant; bug #722361)
+ - rubygems 3.2.0~rc.1-1 (unimportant; bug #722361)
- libgems-ruby <removed> (unimportant; bug #722361)
NOTE: Non-issue, you trust the site providing the gem with installing arbitrary code, allowing
NOTE: it a potential elevated CPU consumption doesn't add any extra harm
@@ -8484,7 +8484,7 @@ CVE-2013-4288 (Race condition in PolicyKit (aka polkit) allows local users to by
[squeeze] - policykit-1 <no-dsa> (The update only deprecates an API and introduces a new option for pkcheck, no src package uses this API)
[wheezy] - policykit-1 <no-dsa> (The update only deprecates an API and introduces a new option for pkcheck, no src package uses this API)
CVE-2013-4287 (Algorithmic complexity vulnerability in Gem::Version::VERSION_PATTERN ...)
- - rubygems <unfixed> (unimportant; bug #722361)
+ - rubygems 3.2.0~rc.1-1 (unimportant; bug #722361)
- libgems-ruby <removed> (unimportant; bug #722361)
NOTE: Non-issue, you trust the site providing the gem with installing arbitrary code, allowing
NOTE: it a potential elevated CPU consumption doesn't add any extra harm

© 2014-2024 Faster IT GmbH | imprint | privacy policy