white at alioth.debian.org
2008-Sep-09 13:24 UTC
[Secure-testing-commits] r9784 - data/CVE
Author: white
Date: 2008-09-09 13:24:45 +0000 (Tue, 09 Sep 2008)
New Revision: 9784
Modified:
data/CVE/list
Log:
2 ruby NFUs talking about ruby1.6
Modified: data/CVE/list
==================================================================---
data/CVE/list 2008-09-09 13:17:15 UTC (rev 9783)
+++ data/CVE/list 2008-09-09 13:24:45 UTC (rev 9784)
@@ -2845,9 +2845,9 @@
- linux-2.6 2.6.19-1
NOTE: 3022d734a54cbd2b65eea9a024564821101b4a9a
CVE-2008-2728 (Integer overflow in the rb_ary_splice function in Ruby 1.6.x
allows ...)
- TODO: check
+ NOT-FOR-US: only Ruby 1.6 is affected
CVE-2008-2727 (Integer overflow in the rb_ary_splice function in Ruby 1.6.x
allows ...)
- TODO: check
+ NOT-FOR-US: only Ruby 1.6 is affected
CVE-2008-2726 (Integer overflow in the rb_ary_splice function in Ruby 1.8.4 and
...)
{DSA-1618-1 DSA-1612-1}
- ruby1.9 1.9.0.2-1