[Secure-testing-commits] r8166 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Fri Feb 15 14:36:29 UTC 2008


Author: nion
Date: 2008-02-15 14:36:27 +0000 (Fri, 15 Feb 2008)
New Revision: 8166

Modified:
   data/CVE/list
Log:
CVE-2008-019{4,3} fixed in wordpress 2.1.0-1

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-02-15 14:20:48 UTC (rev 8165)
+++ data/CVE/list	2008-02-15 14:36:27 UTC (rev 8166)
@@ -1349,11 +1349,11 @@
 	NOTE: full path and DB structure already known on Debian
 	NOTE: poked hendry
 CVE-2008-0194 (Directory traversal vulnerability in wp-db-backup.php in WordPress ...)
-	- wordpress <not-affected> (Vulnerable code removed since 2.1 release)
+	- wordpress 2.1.0-1
+	NOTE: Vulnerable code removed since 2.1 release
 CVE-2008-0193 (Cross-site scripting (XSS) vulnerability in wp-db-backup.php in ...)
-	- wordpress <unfixed>
-	TODO: check; exact affectedness needs to be verified
-	NOTE: poked hendry
+	- wordpress 2.1.0-1
+	NOTE: Vulnerable code removed since 2.1 release
 CVE-2008-0192 (Multiple cross-site scripting (XSS) vulnerabilities in WordPress 2.0.9 ...)
 	- wordpress 2.0.10-1
 	NOTE: poked hendry




More information about the Secure-testing-commits mailing list