[Secure-testing-commits] r7406 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Tue Nov 27 17:27:25 UTC 2007


Author: nion
Date: 2007-11-27 17:27:24 +0000 (Tue, 27 Nov 2007)
New Revision: 7406

Modified:
   data/CVE/list
Log:
CVE-2007-5960, CVE-2007-5959, CVE-2007-5947 fixed in iceweasel 2.0.0.10-1


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-11-27 14:55:26 UTC (rev 7405)
+++ data/CVE/list	2007-11-27 17:27:24 UTC (rev 7406)
@@ -219,10 +219,12 @@
 	RESERVED
 CVE-2007-5961
 	RESERVED
-CVE-2007-5960
+CVE-2007-5960 [CSRF protection bypass]
 	RESERVED
-CVE-2007-5959
+	- iceweasel 2.0.0.10-1
+CVE-2007-5959 [multiple security issues]
 	RESERVED
+	- iceweasel 2.0.0.10-1
 CVE-2007-5958
 	RESERVED
 CVE-2006-7229 (The skge driver 1.5 in Linux kernel 2.6.15 on Ubuntu does not properly ...)
@@ -261,7 +263,7 @@
 CVE-2007-5948 (Multiple cross-site scripting (XSS) vulnerabilities in main.php in ...)
 	NOT-FOR-US: SF-Shoutbox
 CVE-2007-5947 (The jar protocol handler in Mozilla Firefox retrieves the inner URL ...)
-	- iceweasel <unfixed> (low; bug #451624)
+	- iceweasel 2.0.0.10-1 (low; bug #451624)
 CVE-2007-5946 (Unspecified vulnerability in the Aries PA-RISC emulator on HP-UX ...)
 	NOT-FOR-US: HP-UX
 CVE-2007-5945 (USVN before 0.6.5 allows remote attackers to obtain a list of ...)




More information about the Secure-testing-commits mailing list