[Secure-testing-commits] r6842 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Sun Oct 7 07:39:58 UTC 2007


Author: nion
Date: 2007-10-07 07:39:58 +0000 (Sun, 07 Oct 2007)
New Revision: 6842

Modified:
   data/CVE/list
Log:
CVE-2007-4724 unimportant, file just included as example script


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-10-07 07:35:03 UTC (rev 6841)
+++ data/CVE/list	2007-10-07 07:39:58 UTC (rev 6842)
@@ -1115,8 +1115,8 @@
 	NOT-FOR-US: AkkyWareHOUSE
 CVE-2007-4724 (Cross-site request forgery (CSRF) vulnerability in cal2.jsp in the ...)
 	- tomcat5.5-webapps <not-affected> (Version already ships fixed files)
-	- tomcat5-webapps <unfixed> (low; bug #441205)
-	- libservlet2.4-java <unfixed> (low)
+	- tomcat5-webapps <unfixed> (unimportant; bug #441205)
+	- libservlet2.4-java <unfixed> (unimportant)
 	NOTE: DSA should not be required, minor issue, jsp just present as example
 CVE-2007-4723 (Directory traversal vulnerability in Ragnarok Online Control Panel ...)
 	NOT-FOR-US: Ragnarok




More information about the Secure-testing-commits mailing list