[Secure-testing-commits] r10024 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Tue Oct 7 10:49:29 UTC 2008


Author: white
Date: 2008-10-07 10:49:27 +0000 (Tue, 07 Oct 2008)
New Revision: 10024

Modified:
   data/CVE/list
Log:
XSS in mysql, maintainer will upload fix shortly

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-10-07 10:47:37 UTC (rev 10023)
+++ data/CVE/list	2008-10-07 10:49:27 UTC (rev 10024)
@@ -27,7 +27,7 @@
 CVE-2008-4457 (SQL injection vulnerability in inc/inc_statistics.php in MemHT Portal ...)
 	NOT-FOR-US: MemHT Portal
 CVE-2008-4456 (Cross-site scripting (XSS) vulnerability in the command-line client in ...)
-	TODO: check
+	- mysql-dfsg-5.0 <unfixed> (low)
 CVE-2008-4455 (Directory traversal vulnerability in index.php in EKINdesigns MySQL ...)
 	NOT-FOR-US: EKINdesigns MySQL Quick Admin
 CVE-2008-4454 (Directory traversal vulnerability in EKINdesigns MySQL Quick Admin ...)




More information about the Secure-testing-commits mailing list