[Secure-testing-commits] r2317 - data/CAN

Moritz Muehlenhoff jmm-guest at costa.debian.org
Thu Oct 6 08:18:15 UTC 2005


Author: jmm-guest
Date: 2005-10-06 08:18:08 +0000 (Thu, 06 Oct 2005)
New Revision: 2317

Modified:
   data/CAN/list
Log:
bugzilla CANified


Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-10-06 08:12:25 UTC (rev 2316)
+++ data/CAN/list	2005-10-06 08:18:08 UTC (rev 2317)
@@ -67,8 +67,10 @@
 	- fuzz 0.6-7.1 (bug #183047)
 CAN-2005-XXXX [DoS triggering endless loops in findutils -follow option]
 	- findutils 4.2.22-1 (bug #313081)
-CAN-2005-XXXX [Two information disclosure vulnerabilities in Bugzilla]
+CAN-2005-3138 [bugzilla's config.cgi exposes information to user not logged in]
 	- bugzilla 2.18.4-1 (bug #331206; medium)
+CAN-2005-3139 [bugzilla: bypass of restricted bugs]
+	- bugzilla 2.18.4-1 (bug #331206; medium)
 CAN-2005-2966 [Arbitrary code execution in import of SVG files in dia]
 	RESERVED
 	- dia 0.94.0-15 (bug #330890; medium)




More information about the Secure-testing-commits mailing list