[Secure-testing-commits] r10760 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Sun Dec 21 13:40:20 UTC 2008


Author: nion
Date: 2008-12-21 13:40:19 +0000 (Sun, 21 Dec 2008)
New Revision: 10760

Modified:
   data/CVE/list
Log:
CVE-2008-5644 fixed in typo3 4.2.3-1
two new trac issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-12-21 13:26:05 UTC (rev 10759)
+++ data/CVE/list	2008-12-21 13:40:19 UTC (rev 10760)
@@ -58,13 +58,13 @@
 CVE-2008-5648 (SQL injection vulnerability in admin/login.php in DeltaScripts PHP ...)
 	NOT-FOR-US: DeltaScripts PHP Shop
 CVE-2008-5647 (Unspecified vulnerability in the HTML sanitizer filter in Trac before ...)
-	TODO: check
+	- trac <unfixed> (low; bug #509342)
 CVE-2008-5646 (Unspecified vulnerability in Trac before 0.11.2 allows attackers to ...)
-	TODO: check
+	- trac <unfixed> (low; bug #509342)
 CVE-2008-5645 (Directory traversal vulnerability in the media server in Orb Networks ...)
 	NOT-FOR-US: Orb Networks Orb
 CVE-2008-5644 (Cross-site scripting (XSS) vulnerability in the file backend module in ...)
-	TODO: check
+	- typo3 4.2.3-1 (low)
 CVE-2008-5643 (SQL injection vulnerability in the Books (com_books) component for ...)
 	NOT-FOR-US: Joomla
 CVE-2008-5642 (Directory traversal vulnerability in admin/login.php in CMS Made ...)




More information about the Secure-testing-commits mailing list