[Secure-testing-commits] r4670 - data/CVE

Stefan Fritsch stef-guest at costa.debian.org
Sun Sep 3 20:22:23 UTC 2006


Author: stef-guest
Date: 2006-09-03 20:22:21 +0000 (Sun, 03 Sep 2006)
New Revision: 4670

Modified:
   data/CVE/list
Log:
CVE-2006-4433: php issue already fixed (low)

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-09-03 20:02:38 UTC (rev 4669)
+++ data/CVE/list	2006-09-03 20:22:21 UTC (rev 4670)
@@ -7,7 +7,8 @@
 CVE-2006-4434 (Use-after-free vulnerability in Sendmail before 8.13.8 allows remote ...)
 	- sendmail 8.13.8-1 (bug #385054; medium)
 CVE-2006-4433 (PHP before 4.4.3 and 5.x before 5.1.4 does not limit the character set ...)
-	TODO: check
+	- php4 4:4.4.4-1 (low)
+	- php5 5.1.4-0.1 (low)
 CVE-2006-4432 (Directory traversal vulnerability in Zend Platform 2.2.1 and earlier ...)
 	NOT-FOR-US: Zend Platform
 CVE-2006-4431 (Multiple buffer overflows in the (a) Session Clustering Daemon and the ...)
@@ -114,6 +115,7 @@
 	RESERVED
 CVE-2006-4380 (MySQL before 4.1.13 allows local users to cause a denial of service ...)
 	TODO: check
+	NOTE: sf: pinged maintainer
 CVE-2006-4379
 	RESERVED
 CVE-2006-4378 (** DISPUTED ** ...)
@@ -139,7 +141,7 @@
 CVE-2006-4368 (PHP remote file inclusion vulnerability in ...)
 	NOT-FOR-US: IntegraMOD Portal
 CVE-2006-4367 (SQL injection vulnerability in alltopics.php in the All Topics Hack ...)
-	TODO: check
+	NOT-FOR-US: All Topics Hack for phpBB
 CVE-2006-4366 (PHP remote file inclusion vulnerability in index.php in RedBLoG 0.5 ...)
 	NOT-FOR-US: RedBLoG
 CVE-2006-4365 (Multiple PHP remote file inclusion vulnerabilities in VistaBB 2.0.33 ...)




More information about the Secure-testing-commits mailing list