[Secure-testing-commits] r9842 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Wed Sep 17 13:17:06 UTC 2008


Author: white
Date: 2008-09-17 13:17:05 +0000 (Wed, 17 Sep 2008)
New Revision: 9842

Modified:
   data/CVE/list
Log:
New twiki issue, impact low

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-09-17 12:33:01 UTC (rev 9841)
+++ data/CVE/list	2008-09-17 13:17:05 UTC (rev 9842)
@@ -5,7 +5,8 @@
 CVE-2008-4113 (The sctp_getsockopt_hmac_ident function in net/sctp/socket.c in the ...)
 	TODO: check
 CVE-2008-4112 (Directory traversal vulnerability in bin/configure in TWiki before ...)
-	TODO: check
+	- twiki <unfixed> (low)
+	NOTE: access to configure script is restricted to localhost on Debian
 CVE-2008-4111 (Unspecified vulnerability in Servlet Engine/Web Container in IBM ...)
 	NOT-FOR-US: IBM WebSphere Application Server
 CVE-2008-4110 (Buffer overflow in the SQLVDIRLib.SQLVDirControl ActiveX control in ...)




More information about the Secure-testing-commits mailing list