[Secure-testing-commits] r9613 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Wed Aug 20 18:52:26 UTC 2008


Author: nion
Date: 2008-08-20 18:52:25 +0000 (Wed, 20 Aug 2008)
New Revision: 9613

Modified:
   data/CVE/list
Log:
workaround CVE-2008-3330 being displayed as vulnerable in etch

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-08-20 18:06:42 UTC (rev 9612)
+++ data/CVE/list	2008-08-20 18:52:25 UTC (rev 9613)
@@ -1011,6 +1011,7 @@
 CVE-2008-3330 (Cross-site scripting (XSS) vulnerability in ...)
 	- horde3 3.2.1+debian0-1 (low; bug #492578)
 	- turba 2.2.1-1 (low)
+	[etch] - turba <not-affected> (only version 2.2 contains vulnerable code, etch has 2.1)
 CVE-2008-3325 (Cross-site request forgery (CSRF) vulnerability in Moodle 1.6.x before ...)
 	- moodle 1.8.1-1 (low)
 	NOTE: http://moodle.org/mod/forum/discuss.php?d=101405




More information about the Secure-testing-commits mailing list