[Secure-testing-commits] r4716 - data/CVE

Stefan Fritsch stef-guest at costa.debian.org
Sun Sep 10 14:50:26 UTC 2006


Author: stef-guest
Date: 2006-09-10 14:50:25 +0000 (Sun, 10 Sep 2006)
New Revision: 4716

Modified:
   data/CVE/list
Log:
CVE-2006-0207 does affect php4 in sarge

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-09-10 13:53:37 UTC (rev 4715)
+++ data/CVE/list	2006-09-10 14:50:25 UTC (rev 4716)
@@ -10423,7 +10423,7 @@
 CVE-2006-0207 (Multiple HTTP response splitting vulnerabilities in PHP 5.1.1 allow ...)
 	- php5 5.1.2-1
 	- php4 4:4.4.2-1 (bug #354683)
-	[sarge] - php4 <not-affected> (Not affected per Hardened PHP)
+	NOTE: the second part (header function) affects also php4
 CVE-2006-0206 (Eval injection vulnerability in Light Weight Calendar (LWC) 1.0 ...)
 	NOT-FOR-US: Light Weight Calendar
 CVE-2006-0205 (Multiple SQL injection vulnerabilities in Wordcircle 2.17 allow remote ...)




More information about the Secure-testing-commits mailing list