[Secure-testing-commits] r12049 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Thu Jun 4 22:20:28 UTC 2009


Author: jmm-guest
Date: 2009-06-04 22:20:27 +0000 (Thu, 04 Jun 2009)
New Revision: 12049

Modified:
   data/CVE/list
Log:
ModSecurity issue CVEfied


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-06-04 21:45:04 UTC (rev 12048)
+++ data/CVE/list	2009-06-04 22:20:27 UTC (rev 12049)
@@ -6,8 +6,10 @@
 	RESERVED
 CVE-2009-1903 (The PDF XSS protection feature in ModSecurity before 2.5.8 allows ...)
 	- libapache-mod-security 2.5.9-1 
+	TODO: Investigate, check stable/oldstable, if necessary open RT ticket
 CVE-2009-1902 (The multipart processor in ModSecurity before 2.5.9 allows remote ...)
 	- libapache-mod-security 2.5.9-1
+	TODO: Investigate, check stable/oldstable, if necessary open RT ticket
 CVE-2009-1901 (The Security component in IBM WebSphere Application Server (WAS) 6.0.2 ...)
 	NOT-FOR-US: IBM WebSphere
 CVE-2009-1900 (The Configservice APIs in the Administrative Console component in IBM ...)
@@ -2152,9 +2154,6 @@
 	NOT-FOR-US: ColdFusion
 CVE-2003-1571 (Web Wiz Guestbook 6.0 stores sensitive information under the web root ...)
 	NOT-FOR-US: Web Wiz Guestbook
-CVE-2009-XXXX [unspecified DoS]
-	- libapache-mod-security 2.5.9-1
-	TODO: Investigate, check stable/oldstable, if necessary open RT ticket
 CVE-2009-1221
 	RESERVED
 CVE-2009-1220 (Cross-site scripting (XSS) vulnerability in +webvpn+/index.html in ...)




More information about the Secure-testing-commits mailing list