[Secure-testing-commits] r11015 - data/CVE

atomo64-guest at alioth.debian.org atomo64-guest at alioth.debian.org
Thu Jan 22 01:29:32 UTC 2009


Author: atomo64-guest
Date: 2009-01-22 01:29:31 +0000 (Thu, 22 Jan 2009)
New Revision: 11015

Modified:
   data/CVE/list
Log:
XSS vuln in horde3


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-01-22 01:00:42 UTC (rev 11014)
+++ data/CVE/list	2009-01-22 01:29:31 UTC (rev 11015)
@@ -130,9 +130,9 @@
 CVE-2009-0178 (Unspecified vulnerability in IBM Hardware Management Console (HMC) 7 ...)
 	TODO: check
 CVE-2009-0177 (vmwarebase.dll, as used in the vmware-authd service (aka ...)
-	TODO: check
+	NOT-FOR-US: vmware-authd
 CVE-2009-0176 (Multiple heap-based buffer overflows in the PDF distiller in the ...)
-	TODO: check
+	NOT-FOR-US: Attachment Service in Research in Motion
 CVE-2009-0175 (Heap-based buffer overflow in Heathco Software MP3 TrackMaker 1.5 ...)
 	TODO: check
 CVE-2009-0174 (Stack-based buffer overflow in VUPlayer 2.49 allows remote attackers ...)
@@ -141,7 +141,7 @@
 	- websvn <not-affected>
 	[etch] - websvn 1.61-21 (bug #503330)
 CVE-2008-5917 (Cross-site scripting (XSS) vulnerability in the XSS filter ...)
-	TODO: check
+	- horde3 <unfixed> (bug #512592)
 CVE-2008-5916 (gitweb/gitweb.perl in gitweb in Git 1.6.x before 1.6.0.6, 1.5.6.x ...)
 	TODO: check
 CVE-2008-5915 (An unspecified function in the JavaScript implementation in Google ...)




More information about the Secure-testing-commits mailing list