[Secure-testing-commits] r7513 - in data: CVE NMU

white at alioth.debian.org white at alioth.debian.org
Wed Dec 5 16:12:48 UTC 2007


Author: white
Date: 2007-12-05 16:12:47 +0000 (Wed, 05 Dec 2007)
New Revision: 7513

Modified:
   data/CVE/list
   data/NMU/list
Log:
Fix sitebar CVEs in NMU

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-12-05 14:01:30 UTC (rev 7512)
+++ data/CVE/list	2007-12-05 16:12:47 UTC (rev 7513)
@@ -1340,14 +1340,14 @@
 CVE-2007-5696 (PHP remote file inclusion vulnerability in includes.php in phpBasic ...)
 	NOT-FOR-US: phpBasic
 CVE-2007-5695 (command.php in SiteBar 3.3.8 allows remote attackers to redirect users ...)
-	- sitebar <unfixed> (low; bug #448690)
+	- sitebar 3.3.8-12.1 (low; bug #448690)
 	NOTE: there is no real exploit scenario
 CVE-2007-5694 (Absolute path traversal vulnerability in the translation module ...)
-	- sitebar <unfixed> (low; bug #447135)
+	- sitebar 3.3.8-12.1 (low; bug #447135)
 CVE-2007-5693 (Eval injection vulnerability in the translation module ...)
-	- sitebar <unfixed> (low; bug #447135)
+	- sitebar 3.3.8-12.1 (low; bug #447135)
 CVE-2007-5692 (Multiple cross-site scripting (XSS) vulnerabilities in SiteBar 3.3.8 ...)
-	- sitebar <unfixed> (low; bug #448689)
+	- sitebar 3.3.8-12.1 (low; bug #448689)
 CVE-2007-5691 (ParseFTPList.cpp in Mozilla Firefox 2.0.0.7 allows remote FTP servers ...)
 	- iceweasel 2.0.0.8-1 (unimportant)
 	NOTE: Browser crashes not treated as security problems
@@ -2306,9 +2306,9 @@
 CVE-2007-5493 (The SMS handler for Windows Mobile 2005 Pocket PC Phone edition allows ...)
 	NOT-FOR-US: Windows Mobile
 CVE-2007-5492 (Static code injection vulnerability in the translation module ...)
-	- sitebar <unfixed> (bug #447135)
+	- sitebar 3.3.8-12.1 (bug #447135)
 CVE-2007-5491 (Directory traversal vulnerability in the translation module ...)
-	- sitebar <unfixed> (bug #447135)
+	- sitebar 3.3.8-12.1 (bug #447135)
 CVE-2007-5490 (SQL injection vulnerability in default.asp in Okul Otomasyon Portal ...)
 	NOT-FOR-US: Okul Otomasyon Portal
 CVE-2007-5489 (Directory traversal vulnerability in index.php in Artmedic CMS 3.4 and ...)

Modified: data/NMU/list
===================================================================
--- data/NMU/list	2007-12-05 14:01:30 UTC (rev 7512)
+++ data/NMU/list	2007-12-05 16:12:47 UTC (rev 7513)
@@ -53,3 +53,4 @@
 2007-12-02 htdig 1:3.2.0b6-4
 2007-12-04 libcairo 1.4.10-1.1
 2007-12-04 ardour 2.1-1.1
+2007-12-05 sitebar 3.3.8-12.1




More information about the Secure-testing-commits mailing list