Git-Url: 
http://git.frugalware.org/gitweb/gitweb.cgi?p=homepage-ng.git;a=commitdiff;h=81ad3750d48b26c947ad019b0456e99eb3c482fe

commit 81ad3750d48b26c947ad019b0456e99eb3c482fe
Author: kikadf <[email protected]>
Date:   Thu Sep 25 08:43:51 2014 +0200

Add FSA for nginx

diff --git a/frugalware/xml/security.xml b/frugalware/xml/security.xml
index fad9eca..ec2c51b 100644
--- a/frugalware/xml/security.xml
+++ b/frugalware/xml/security.xml
@@ -39,6 +39,19 @@

<fsas>
<fsa>
+               <id>902</id>
+               <date>2014-09-25</date>
+               <author>kikadf</author>
+               <package>nginx</package>
+               <vulnerable>1.4.1-1</vulnerable>
+               <unaffected>1.4.1-2arcturus1</unaffected>
+               <bts></bts>
+               <cve>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4547
+                          
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3616</cve>
+               <desc>Ivan Fratric of the Google Security Team discovered a bug 
in nginx, a web server, which might allow an attacker to bypass security 
restrictions by using a specially crafted request.
+                          Antoine Delignat-Lavaud and Karthikeyan Bhargavan 
discovered that it was possible to reuse cached SSL sessions in unrelated 
contexts, allowing virtual host confusion attacks in some configurations by an 
attacker in a privileged network position.</desc>
+       </fsa>
+       <fsa>
<id>901</id>
<date>2014-09-23</date>
<author>kikadf</author>
_______________________________________________
Frugalware-git mailing list
[email protected]
http://frugalware.org/mailman/listinfo/frugalware-git

Reply via email to