[Secure-testing-commits] r11622 - data/CVE

Raphael Geissert atomo64-guest at alioth.debian.org
Tue Apr 14 02:30:01 UTC 2009


Author: atomo64-guest
Date: 2009-04-14 02:30:01 +0000 (Tue, 14 Apr 2009)
New Revision: 11622

Modified:
   data/CVE/list
Log:
Added information about the "recent" php issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-04-14 01:21:12 UTC (rev 11621)
+++ data/CVE/list	2009-04-14 02:30:01 UTC (rev 11622)
@@ -99,9 +99,12 @@
 CVE-2009-1273 (pam_ssh 1.92 and possibly other versions, as used when PAM is compiled ...)
 	TODO: check
 CVE-2009-1272 (The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x ...)
-	TODO: check
+	- php5 5.2.6.dfsg.1-3
+	- php4 <not-affected> (this is caused by the fix for CVE-2008-5658, which was not applied to php4)
 CVE-2009-1271 (The JSON_parser function (ext/json/JSON_parser.c) in PHP 5.2.x before ...)
-	TODO: check
+	- php5 5.2.9.dfsg.1-1
+	- php4 <not-affected> (the JSON extension was introduced in php5.2)
+	- php-json-ext <unfixed>
 CVE-2009-1269
 	RESERVED
 CVE-2009-1268




More information about the Secure-testing-commits mailing list