[Secure-testing-commits] r7150 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Tue Oct 30 21:45:55 UTC 2007


Author: nion
Date: 2007-10-30 21:45:55 +0000 (Tue, 30 Oct 2007)
New Revision: 7150

Modified:
   data/CVE/list
Log:
new issue: CVE-2007-5461 tomcat5.5, previous information was wrong


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-10-30 21:14:08 UTC (rev 7149)
+++ data/CVE/list	2007-10-30 21:45:55 UTC (rev 7150)
@@ -1311,8 +1311,8 @@
 CVE-2002-2228 (MailScanner before 4.0 5-1 and before 3.2 6-1 allows remote attackers ...)
 	- mailscanner 4.22.5-1
 CVE-2007-5461 (Absolute path traversal vulnerability in Apache Tomcat 4.0.0 through ...)
-	- tomcat5.5 <not-affected> (Tomcat 6.x specific vulnerability referring to upstream)
-	- tomcat5 <not-affected> (Tomcat 6.x specific vulnerability referring to upstream)
+	- tomcat5.5 <unfixed> (low; bug #448664)
+	TODO: check tomcat5
 CVE-2007-5391 (Unspecified vulnerability in HP Select Identity 4.01 through 4.01.010 ...)
 	NOT-FOR-US: HP Select Identity
 CVE-2007-5390 (PHP remote file inclusion vulnerability in index.php in PicoFlat CMS ...)




More information about the Secure-testing-commits mailing list