[VIM] RubyGems dupe CVE assignment? (for BID / CVE)

security curmudgeon jericho at attrition.org
Mon Sep 23 16:19:27 CDT 2013


http://www.securityfocus.com/bid/62442
CVE-2013-4363

http://osvdb.org/97163
CVE-2013-4287

These have different creditees. The BID entry is too vague to figure out 
if this is a dupe assignment or not.

http://www.securityfocus.com/bid/62442/solution

Solution:
Updates are available. Please see the references or vendor advisory for 
more information.

http://www.securityfocus.com/bid/62442/references

References:
(blank)


It would be really nice if BID could treat the public database differently 
than their private one to avoid this, as it is very common and entirely 
frustrating.


More information about the VIM mailing list