[Secure-testing-commits] r12533 - data/CVE

Nico Golde nion at alioth.debian.org
Sun Aug 9 16:27:35 UTC 2009


Author: nion
Date: 2009-08-09 16:27:35 +0000 (Sun, 09 Aug 2009)
New Revision: 12533

Modified:
   data/CVE/list
Log:
new spip issue, maintainer working on update, package not present in stable

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-08-09 14:25:13 UTC (rev 12532)
+++ data/CVE/list	2009-08-09 16:27:35 UTC (rev 12533)
@@ -1,3 +1,7 @@
+CVE-2009-XXXX [missing authorization check in spip installer]
+	- spip <unfixed> (medium)
+	NOTE: CVE id requested
+	NOTE: http://www.spip-contrib.net/SPIP-Security-Alert-new-version
 CVE-2009-XXXX [rubygems: integrity violation]
 	- rubygems1.9 <not-affected> (medium; bug #540610)
 	- rubygems1.8 <not-affected>




More information about the Secure-testing-commits mailing list