summaryrefslogtreecommitdiffstats
path: root/data/CVE/2013.list
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2020-11-29 21:08:05 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2020-11-29 21:08:05 +0100
commitdcda8860396e8b6523726fa333aa32a522abcd74 (patch)
tree04dace9bddbc7fbb7ce870c67d0798a7ede90d7e /data/CVE/2013.list
parent3cb81f9d9dda2c9aa726b4f3435508e9a078f800 (diff)
Track fixed version for older CVE-2013-4363/CVE-2013-4287
Diffstat (limited to 'data/CVE/2013.list')
-rw-r--r--data/CVE/2013.list4
1 files changed, 2 insertions, 2 deletions
diff --git a/data/CVE/2013.list b/data/CVE/2013.list
index b7271d421b..e97d1f3a58 100644
--- a/data/CVE/2013.list
+++ b/data/CVE/2013.list
@@ -8194,7 +8194,7 @@ CVE-2013-4365 (Heap-based buffer overflow in the fcgid_header_bucket_read functi
CVE-2013-4364 ((1) oo-analytics-export and (2) oo-analytics-import in the openshift-o ...)
NOT-FOR-US: OpenShift
CVE-2013-4363 (Algorithmic complexity vulnerability in Gem::Version::ANCHORED_VERSION ...)
- - rubygems <unfixed> (unimportant; bug #722361)
+ - rubygems 3.2.0~rc.1-1 (unimportant; bug #722361)
- libgems-ruby <removed> (unimportant; bug #722361)
NOTE: Non-issue, you trust the site providing the gem with installing arbitrary code, allowing
NOTE: it a potential elevated CPU consumption doesn't add any extra harm
@@ -8484,7 +8484,7 @@ CVE-2013-4288 (Race condition in PolicyKit (aka polkit) allows local users to by
[squeeze] - policykit-1 <no-dsa> (The update only deprecates an API and introduces a new option for pkcheck, no src package uses this API)
[wheezy] - policykit-1 <no-dsa> (The update only deprecates an API and introduces a new option for pkcheck, no src package uses this API)
CVE-2013-4287 (Algorithmic complexity vulnerability in Gem::Version::VERSION_PATTERN ...)
- - rubygems <unfixed> (unimportant; bug #722361)
+ - rubygems 3.2.0~rc.1-1 (unimportant; bug #722361)
- libgems-ruby <removed> (unimportant; bug #722361)
NOTE: Non-issue, you trust the site providing the gem with installing arbitrary code, allowing
NOTE: it a potential elevated CPU consumption doesn't add any extra harm

© 2014-2024 Faster IT GmbH | imprint | privacy policy