[Secure-testing-commits] r747 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Mon, 04 Apr 2005 21:36:12 +0000


Author: jmm-guest
Date: 2005-04-04 21:36:09 +0000 (Mon, 04 Apr 2005)
New Revision: 747

Modified:
   sarge-checks/CAN/list
Log:
horde xss


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-04-04 21:32:37 UTC (rev 746)
+++ sarge-checks/CAN/list	2005-04-04 21:36:09 UTC (rev 747)
@@ -7,7 +7,8 @@
 CAN-2005-0962 (SQL injection vulnerability in index.php for Lighthouse Squirrelcart ...)
 	NOTE: not-for-us (SquirrelCart)
 CAN-2005-0961 (Cross-site scripting (XSS) vulnerability in Horde 3.0.4 before ...)
-	TODO: check
+	- horde3 3.0.4-1
+	TODO: Check whether horde2 is affected as well
 CAN-2005-0960 (Multiple vulnerabilities in the SACK functionality in (1) tcp_input.c ...)
 	NOTE: not-for-us (OpenBSD)
 CAN-2005-0959 (Buffer overflow in the mt_do_dir function in YepYep mtftpd 0.0.3 may ...)