[Secure-testing-commits] r4061 - data/CVE

Alec Berryman alec-guest at costa.debian.org
Tue May 23 12:36:30 UTC 2006


Author: alec-guest
Date: 2006-05-23 12:36:26 +0000 (Tue, 23 May 2006)
New Revision: 4061

Modified:
   data/CVE/list
Log:
* php-pear and php4-pear don't ship (and haven't) PEAR Text_Password


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-05-23 12:28:43 UTC (rev 4060)
+++ data/CVE/list	2006-05-23 12:36:26 UTC (rev 4061)
@@ -3065,7 +3065,7 @@
 CVE-2006-1221 (Untrusted search path vulnerability in the TrueVector service ...)
 	NOT-FOR-US: TrueVector
 CVE-2005-4730 (Unspecified vulnerability in PEAR Text_Password 1.0 has unknown impact ...)
-	TODO: Someone please check, if this is included in the standard PEAR packages
+	NOT-FOR-US: Not included in php-pear or php4-pear
 CVE-2006-XXXX [Insufficient filename sanitising in darcsweb]
 	- darcsweb 0.15-1
 CVE-2006-1220 (Integer overflow in the mach_msg_send function in the kernel for Mac ...)




More information about the Secure-testing-commits mailing list