[Secure-testing-commits] r1126 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Sat, 21 May 2005 23:27:29 +0000


Author: jmm-guest
Date: 2005-05-21 23:27:27 +0000 (Sat, 21 May 2005)
New Revision: 1126

Modified:
   sarge-checks/CAN/list
Log:
sqwebmail not vulnerable.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-05-21 23:15:13 UTC (rev 1125)
+++ sarge-checks/CAN/list	2005-05-21 23:27:27 UTC (rev 1126)
@@ -1525,8 +1525,7 @@
 CAN-2005-1309 (Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote ...)
 	NOTE: not-for-us (bBlog)
 CAN-2005-1308 (SqWebMail allows remote attackers to inject arbitrary web script or ...)
-	NOTE: upstream says attack won't work
-	- sqwebmail (unfixed; bug #307575)
+	NOTE: upstream says attack won't work, see bug 307575
 CAN-2005-1307 (stopserver.sh in Adobe Version Cue on Mac OS X allows local users to ...)
 	NOTE: not-for-us (Adobe Version Cue)
 CAN-2005-1306