[Secure-testing-commits] r7412 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Tue Nov 27 22:45:24 UTC 2007


Author: nion
Date: 2007-11-27 22:45:23 +0000 (Tue, 27 Nov 2007)
New Revision: 7412

Modified:
   data/CVE/list
Log:
new issue: scanbuttond (CVE-2007-6131)


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-11-27 22:10:14 UTC (rev 7411)
+++ data/CVE/list	2007-11-27 22:45:23 UTC (rev 7412)
@@ -1,7 +1,8 @@
 CVE-2007-6132
 	RESERVED
 CVE-2007-6131 (buttonpressed.sh in scanbuttond 0.2.3 allows local users to overwrite ...)
-	TODO: check
+	- scanbuttond <unfixed> (medium; bug #453239)
+	NOTE: I set this to medium because this is really bad if scanbuttond is used as root
 CVE-2007-6130 (gnump3d 2.9final does not apply password protection to its plugins, ...)
 	- gnump3d 3.0-1 (low)
 CVE-2007-6129 (Directory traversal vulnerability in scripts/include/show_content.php ...)




More information about the Secure-testing-commits mailing list