[Secure-testing-commits] r12124 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Sun Jun 14 22:04:29 UTC 2009


Author: jmm-guest
Date: 2009-06-14 22:04:29 +0000 (Sun, 14 Jun 2009)
New Revision: 12124

Modified:
   data/CVE/list
Log:
torrentflux not affected


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-06-14 16:50:41 UTC (rev 12123)
+++ data/CVE/list	2009-06-14 22:04:29 UTC (rev 12124)
@@ -2465,9 +2465,9 @@
 CVE-2008-6586 (Cross-site request forgery (CSRF) vulnerability in gui/index.php in ...)
 	NOT-FOR-US: ?Torrent (uTorrent) WebUI
 CVE-2008-6585 (Cross-site request forgery (CSRF) vulnerability in html/admin.php in ...)
-	- torrentflux <unfixed> (bug #531614)
+	- torrentflux <not-affected> (Debian packaging uses a different directory layout, see bug #531614)
 CVE-2008-6584 (html/index.php in TorrentFlux 2.3 allows remote authenticated users to ...)
-	- torrentflux <unfixed> (bug #531614)
+	- torrentflux <not-affected> (Debian packaging uses a different directory layout, see bug #531614)
 CVE-2008-6583 (Buffer overflow in BS.player 2.27 build 959 allows remote attackers to ...)
 	NOT-FOR-US: BS.player
 CVE-2009-1274 (Integer overflow in the qt_error parse_trak_atom function in ...)




More information about the Secure-testing-commits mailing list