[Secure-testing-commits] r7592 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Tue Dec 11 19:09:00 UTC 2007


Author: white
Date: 2007-12-11 19:08:59 +0000 (Tue, 11 Dec 2007)
New Revision: 7592

Modified:
   data/CVE/list
Log:
Another mysql issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-12-11 19:01:44 UTC (rev 7591)
+++ data/CVE/list	2007-12-11 19:08:59 UTC (rev 7592)
@@ -1,6 +1,9 @@
 CVE-2007-6304 [potential DoS by remote MySQL servers via a response that lacks the minimum required number of columns]
 	- mysql-dfsg-5.0 <unfixed> (low; bug #455737)
 	TODO: check mysql4
+CVE-2007-6303 [remote authenticated users can gain privileges via a sequence of statements]
+	- mysql-dfsg-5.0 <unfixed> (low; bug #455737)
+	TODO: check mysql4
 CVE-2007-6299 [SQL injection in Drupal when certain contributed modules are enabled]
 	- drupal5 5.5-1
 	- drupal 4.7.10-1
@@ -750,6 +753,7 @@
 	TODO: check mysql 4
 CVE-2007-5968
 	RESERVED
+	- mysql-dfsg-5.0 <unfixed>
 CVE-2007-5967
 	RESERVED
 CVE-2007-5966




More information about the Secure-testing-commits mailing list