[Secure-testing-commits] r1630 - data/CAN

Joey Hess joeyh at costa.debian.org
Mon Aug 22 23:40:37 UTC 2005


Author: joeyh
Date: 2005-08-22 23:40:33 +0000 (Mon, 22 Aug 2005)
New Revision: 1630

Modified:
   data/CAN/list
Log:
new holes in lm-sensors and phpldapadmin


Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-08-22 21:19:40 UTC (rev 1629)
+++ data/CAN/list	2005-08-22 23:40:33 UTC (rev 1630)
@@ -1,3 +1,7 @@
+CAN-2005-XXXX [$servers[$i]['disable_anon_bind'] = true doesn't prevent anonymous to access ldap directory]
+	- phpldapadmin 0.9.6c-5 (bug #322423; low)
+CAN-2005-XXXX [lm-sensors: Insecure tempfile usage in pwmconfig]
+	- lm-sensors 1:2.9.1-7 (bug #324193; medium)
 CAN-2005-2653 (Cross-site scripting (XSS) vulnerability in BBCaffe 2.0 allows remote ...)
 	NOTE: not-for-us (BBCaffe)
 CAN-2005-2652 (Zorum 3.5 allows remote attackers to obtain the full installation path ...)




More information about the Secure-testing-commits mailing list