[Secure-testing-commits] r3898 - data/CVE

Stefan Fritsch stef-guest at costa.debian.org
Sun Apr 30 19:06:06 UTC 2006


Author: stef-guest
Date: 2006-04-30 19:06:01 +0000 (Sun, 30 Apr 2006)
New Revision: 3898

Modified:
   data/CVE/list
Log:
new xine issue
claim

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-04-30 18:53:24 UTC (rev 3897)
+++ data/CVE/list	2006-04-30 19:06:01 UTC (rev 3898)
@@ -254,13 +254,14 @@
 CVE-2006-XXXX [wiki macro XSS vulnerability]
 	- trac 0.9.5-1
 CVE-2006-1906 (Cross-site scripting (XSS) vulnerability in index.php in jjgan852 ...)
-	TODO: check
+	NOT-FOR-US: phpLister
 CVE-2006-1905 (Multiple format string vulnerabilities in xiTK (xitk/main.c) in xine ...)
-	TODO: check
+	- xine-ui <unfixed> (bug #363370; medium)
 CVE-2006-1904 (Cross-site scripting (XSS) vulnerability in index.php in AnimeGenesis ...)
-	TODO: check
+	NOT-FOR-US: AnimeGenesis Gallery
 CVE-2006-1903 (Multiple cross-site scripting (XSS) vulnerabilities in UserLand Manila ...)
-	TODO: check
+	NOT-FOR-US: UserLand Manila
+begin claimed by stef-guest
 CVE-2006-1902 (fold_binary in fold-const.c in GNU Compiler Collection (gcc) 4.1 ...)
 	TODO: check
 CVE-2006-1901 (Mozilla Camino 1.0 and earlier allow remote attackers to cause a ...)
@@ -291,6 +292,7 @@
 	TODO: check
 CVE-2006-1888 (phpGraphy 0.9.11 and earlier allows remote attackers to bypass ...)
 	TODO: check
+end claimed by stef-guest
 CVE-2006-1887 (Unspecified vulnerability in Oracle JD Edwards EnterpriseOne Security ...)
 	NOT-FOR-US: Oracle JD Edwards EnterpriseOne
 CVE-2006-1886 (Unspecified vulnerability in the PeopleTools component in Oracle ...)




More information about the Secure-testing-commits mailing list