[Secure-testing-commits] r4472 - data/CVE

Alec Berryman alec-guest at costa.debian.org
Sat Jul 29 14:23:54 UTC 2006


Author: alec-guest
Date: 2006-07-29 14:23:51 +0000 (Sat, 29 Jul 2006)
New Revision: 4472

Modified:
   data/CVE/list
Log:
* CVE-2006-3835 (tomcat5, tomcat5.5): low, unfixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-07-29 01:43:59 UTC (rev 4471)
+++ data/CVE/list	2006-07-29 14:23:51 UTC (rev 4472)
@@ -3,7 +3,8 @@
 CVE-2006-3836 (Directory traversal vulnerability in index.php in UNIDOmedia Chameleon ...)
 	NOT-FOR-US: UNIDOmedia Chameleon
 CVE-2006-3835 (Apache Tomcat 5 before 5.5.17 allows remote attackers to list ...)
-	TODO: check
+	- tomcat5 <unfixed> (bug filed; low)
+	- tomcat5.5 <unfixed> (bug filed; low)
 CVE-2006-3834 (EJ3 TOPo 2.2.178 includes the password in cleartext in the ID field to ...)
 	NOT-FOR-US: EJ3 TOPo 
 CVE-2006-3833 (index.php in EJ3 TOPo 2.2.178 allows remote attackers to overwrite ...)




More information about the Secure-testing-commits mailing list