[Secure-testing-commits] r8922 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Wed May 28 18:06:05 UTC 2008


Author: nion
Date: 2008-05-28 18:06:04 +0000 (Wed, 28 May 2008)
New Revision: 8922

Modified:
   data/CVE/list
Log:
CVE-2008-1304 does not affect wordpress in debian

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-05-28 16:08:41 UTC (rev 8921)
+++ data/CVE/list	2008-05-28 18:06:04 UTC (rev 8922)
@@ -2455,8 +2455,8 @@
 CVE-2008-1305 (SQL injection vulnerability in filebase.php in the Filebase mod for ...)
 	NOT-FOR-US: Filebase mod for phpBb
 CVE-2008-1304 (Multiple cross-site scripting (XSS) vulnerabilities in WordPress 2.3.2 ...)
-	TODO: check
-	NOTE: grepping the source for invite does not return any results, anyone knows more?
+	- wordpress <not-affected> (Vulnerable code not present)
+	NOTE: referring to upstream this only affected wordpress.com and not the regular wordpress code
 CVE-2008-1303 (The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and ...)
 	NOT-FOR-US: Perforce Server
 CVE-2008-1302 (The Perforce service (p4s.exe) in Perforce Server 2007.3/143793 and ...)




More information about the Secure-testing-commits mailing list