[Secure-testing-commits] r10463 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Sun Nov 23 13:08:45 UTC 2008


Author: nion
Date: 2008-11-23 13:08:44 +0000 (Sun, 23 Nov 2008)
New Revision: 10463

Modified:
   data/CVE/list
Log:
CVE-2008-5189 fixed in rails 2.1.0-6

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-11-23 01:12:31 UTC (rev 10462)
+++ data/CVE/list	2008-11-23 13:08:44 UTC (rev 10463)
@@ -8,7 +8,7 @@
 CVE-2008-XXXX [Quassel CTCP Handling Arbitrary Message Manipulation Vulnerability]
 	- quassel <unfixed> (bug #506550)
 CVE-2008-5189 (CRLF injection vulnerability in Ruby on Rails before 2.0.5 allows ...)
-	TODO: check
+	- rails 2.1.0-6 (low)
 CVE-2008-5188 (The (1) ecryptfs-setup-private, (2) ecryptfs-setup-confidential, and ...)
 	TODO: check
 CVE-2008-5184 (The web interface (cgi-bin/admin.c) in CUPS before 1.3.8 uses the ...)




More information about the Secure-testing-commits mailing list