[Secure-testing-commits] r10184 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Mon Oct 27 18:15:54 UTC 2008


Author: nion
Date: 2008-10-27 18:15:52 +0000 (Mon, 27 Oct 2008)
New Revision: 10184

Modified:
   data/CVE/list
Log:
new phpmyadmin XSS non-issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-10-27 18:12:44 UTC (rev 10183)
+++ data/CVE/list	2008-10-27 18:15:52 UTC (rev 10184)
@@ -1,3 +1,7 @@
+CVE-2008-XXXX [XSS in phpmyadmin via db parameter in pmd_pdf.php]
+	- phpmyadmin <unfixed> (unimportant)
+	NOTE: relies on register_globals being on which is not supported by Debian
+	NOTE: http://www.securityfocus.com/archive/1/497815
 CVE-2008-XXXX [programming error in blender can cause arbitrary code execution]
 	- blender 2.46+dfsg-5 (bug #503632)
 	NOTE: CVE id requested




More information about the Secure-testing-commits mailing list