Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 482180 - GLSA 201308-01: error in the link of the CVE
Summary: GLSA 201308-01: error in the link of the CVE
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: GLSA Errors (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Security
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2013-08-23 08:12 UTC by Agostino Sarubbo
Modified: 2013-08-25 22:20 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Agostino Sarubbo gentoo-dev 2013-08-23 08:12:15 UTC
We have:

http://nvd.nist.gov/nvd.cvm?cvename=CVE-2011-4607    

s/cvm/cfm
Comment 1 Sergey Popov gentoo-dev 2013-08-23 08:34:29 UTC
s/cvm/cfm throws me:

ERROR, "CVE-2011-4607" is valid CVE format, but CVE was not found.

However, original link gave me 404

mitre database says that this CVE is reserved(unpublished), so i am lost :-/
Comment 2 Agostino Sarubbo gentoo-dev 2013-08-23 14:39:18 UTC
(In reply to Sergey Popov from comment #1)
> s/cvm/cfm throws me:
> 
> ERROR, "CVE-2011-4607" is valid CVE format, but CVE was not found.
> 
> However, original link gave me 404
> 
> mitre database says that this CVE is reserved(unpublished), so i am lost :-/

The original link is wrong because there should be "cfm"

The reserved(unpublished) thing is a mitre "fault"

I think that this glsa should be reviewed, because as per http://www.openwall.com/lists/oss-security/2013/08/06/13 the version 0.63 address more CVEs
Comment 3 Sergey Popov gentoo-dev 2013-08-24 05:34:22 UTC
Same thing as in bug #482244

@security, my suggestion: fix GLSA xml, no additional publication
Comment 4 Agostino Sarubbo gentoo-dev 2013-08-25 18:23:50 UTC
(In reply to Sergey Popov from comment #1)
> ERROR, "CVE-2011-4607" is valid CVE format, but CVE was not found.

this is now fixed.
Comment 5 Chris Reffett (RETIRED) gentoo-dev Security 2013-08-25 22:20:06 UTC
Fixed in CVS.