[Secure-testing-commits] r12277 - data/CVE

Florian Weimer fw at alioth.debian.org
Sun Jul 5 18:42:04 UTC 2009


Author: fw
Date: 2009-07-05 18:42:02 +0000 (Sun, 05 Jul 2009)
New Revision: 12277

Modified:
   data/CVE/list
Log:
CVE-2009-1273: libpam-ssh appears to be affected


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-07-05 07:40:53 UTC (rev 12276)
+++ data/CVE/list	2009-07-05 18:42:02 UTC (rev 12277)
@@ -2911,7 +2911,7 @@
 CVE-2007-6726 (Multiple cross-site scripting (XSS) vulnerabilities in Dojo 0.4.1 and ...)
 	NOT-FOR-US: Dojo
 CVE-2009-1273 (pam_ssh 1.92 and possibly other versions, as used when PAM is compiled ...)
-	- pam <not-affected> (we don't compile pam with USE=ssh)
+	- libpam-ssh <unfixed> (low; bug #535877)
 CVE-2009-1272 (The php_zip_make_relative_path function in php_zip.c in PHP 5.2.x ...)
 	{DTSA-188-1}
 	- php5 5.2.6.dfsg.1-3




More information about the Secure-testing-commits mailing list