[Secure-testing-commits] r9753 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Thu Sep 4 18:00:46 UTC 2008


Author: nion
Date: 2008-09-04 18:00:44 +0000 (Thu, 04 Sep 2008)
New Revision: 9753

Modified:
   data/CVE/list
Log:
CVE-2007-6672 doesnt affect jetty in debian

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-09-04 16:58:47 UTC (rev 9752)
+++ data/CVE/list	2008-09-04 18:00:44 UTC (rev 9753)
@@ -8996,7 +8996,9 @@
 CVE-2007-6673 (Cross-site scripting (XSS) vulnerability in Makale Scripti allows ...)
 	NOT-FOR-US: Makale Scripti
 CVE-2007-6672 (Mortbay Jetty 6.1.5 and 6.1.6 allows remote attackers to bypass ...)
-	- jetty <unfixed> (medium; bug #462793)
+	- jetty <not-affected> (medium; bug #462793)
+	NOTE: only applies to version >= 6
+	TODO: check if version >= 6 is uploaded
 CVE-2007-6671 (SQL injection vulnerability in login_form.asp in Instant Softwares ...)
 	NOT-FOR-US: Instant Softwares Dating Site
 CVE-2007-6670 (SQL injection vulnerability in search.php in PHCDownload 1.1.0 allows ...)




More information about the Secure-testing-commits mailing list