[Secure-testing-commits] r8704 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Sun May 4 12:30:31 UTC 2008


Author: nion
Date: 2008-05-04 12:30:30 +0000 (Sun, 04 May 2008)
New Revision: 8704

Modified:
   data/CVE/list
Log:
adding details about CVE-2008-1381 (arbitrary code execution)

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-05-04 12:18:15 UTC (rev 8703)
+++ data/CVE/list	2008-05-04 12:30:30 UTC (rev 8704)
@@ -1457,9 +1457,10 @@
 	- libpng 1.2.26-1 (low; bug #476669)
 	NOTE: 1.2.26-1 contains a patch to fix that
 	[etch] - libpng <no-dsa> (Minor issue, rare function)
-CVE-2008-1381
+CVE-2008-1381 [arbitrary command execution via unescaped shell meta characters]
 	RESERVED
 	- zoneminder <unfixed> (medium; bug #479034)
+	NOTE: http://www.awe.com/mark/blog/200804272230.html
 CVE-2008-1380 (The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird ...)
 	{DSA-1562-1 DSA-1558-1 DSA-1555-1}
 	- iceweasel 2.0.0.14-1




More information about the Secure-testing-commits mailing list