[Secure-testing-commits] r3939 - data/CVE

Stefan Fritsch stef-guest at costa.debian.org
Thu May 11 22:25:50 UTC 2006


Author: stef-guest
Date: 2006-05-11 22:25:46 +0000 (Thu, 11 May 2006)
New Revision: 3939

Modified:
   data/CVE/list
Log:
acidbase fixed
nagios issue is not priority high (cannot be exploited when used from apache)



Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-05-11 21:14:23 UTC (rev 3938)
+++ data/CVE/list	2006-05-11 22:25:46 UTC (rev 3939)
@@ -285,8 +285,8 @@
 CVE-2006-2163 (Cross-site scripting (XSS) vulnerability in index.php in Pinnacle Cart ...)
 	TODO: check
 CVE-2006-2162 (Buffer overflow in CGI scripts in Nagios 1.x before 1.4 and 2.x before ...)
-	- nagios <unfixed> (bug #366682; high)
-	- nagios2 <unfixed> (bug #366683; high)
+	- nagios <unfixed> (bug #366682; medium)
+	- nagios2 <unfixed> (bug #366683; medium)
 CVE-2006-2161 (Buffer overflow in TZipBuilder 1.79.03.01 allows remote attackers to ...)
 	TODO: check
 CVE-2006-2160 (Cross-site scripting (XSS) vulnerability in Russcom Network Loginphp ...)
@@ -1963,7 +1963,7 @@
 CVE-2006-1506 (Unspecified vulnerability in rsh in Sun Microsystems Sun Grid Engine ...)
 	NOT-FOR-US: Sun Microsystems Sun Grid Engine 5.3
 CVE-2006-1505 (base_maintenance.php in Basic Analysis and Security Engine (BASE) ...)
-	- acidbase <unfixed> (bug #361139)
+	- acidbase 1.2.4-1 (bug #361139)
 CVE-2006-1504 (Multiple cross-site scripting (XSS) vulnerabilities in Arab Portal 2.0 ...)
 	NOT-FOR-US: Arab Portal
 CVE-2006-1503 (PHP remote file inclusion vulnerability in ...)




More information about the Secure-testing-commits mailing list