[Secure-testing-commits] r13428 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Wed Dec 2 21:25:25 UTC 2009


Author: jmm-guest
Date: 2009-12-02 21:25:25 +0000 (Wed, 02 Dec 2009)
New Revision: 13428

Modified:
   data/CVE/list
Log:
php5 fixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-12-02 21:17:03 UTC (rev 13427)
+++ data/CVE/list	2009-12-02 21:25:25 UTC (rev 13428)
@@ -13646,7 +13646,9 @@
 	NOT-FOR-US: phpAlumni
 CVE-2008-5814 (Cross-site scripting (XSS) vulnerability in PHP, possibly 5.2.7 and ...)
 	{DSA-1789-1}
-	- php5 <unfixed> (low; bug #523028)
+	- php5 5.2.11.dfsg.1-1 (low; bug #523028)
+        NOTE: I don't know in which version this was fixed specifically, but
+        NOTE: I've checked that the patch is present in this version
 	- php4 <removed> (low; bug #523028)
 CVE-2008-5813 (SQL injection vulnerability in inc/rubriques.php in SPIP 1.8 before ...)
 	- spip 2.0.6-1




More information about the Secure-testing-commits mailing list