[Secure-testing-commits] r11352 - data/CVE
gilbert-guest at alioth.debian.org
gilbert-guest at alioth.debian.org
Sat Mar 7 19:53:26 UTC 2009
Author: gilbert-guest
Date: 2009-03-07 19:53:25 +0000 (Sat, 07 Mar 2009)
New Revision: 11352
Modified:
data/CVE/list
Log:
my mistake, the reason 2009-0542/3 were showing up incorrectly is because they were incorrectly being tracked in terms of binary packages. i've changed tracking to the source package, proftpd-dfsg.
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2009-03-07 19:49:34 UTC (rev 11351)
+++ data/CVE/list 2009-03-07 19:53:25 UTC (rev 11352)
@@ -1193,20 +1193,14 @@
- python-crypto <unfixed> (bug #516660)
CVE-2009-0543 (ProFTPD Server 1.3.1, with NLS support enabled, allows remote ...)
{DSA-1730-1 DSA-1727-1}
- - proftpd 1.3.2-1 (medium; bug #516388)
+ - proftpd-dfsg 1.3.2-1 (medium; bug #516388)
[etch] - proftpd <not-affected> (etch version not affected)
[lenny] - proftpd 1.3.1-17lenny2
- - proftpd-basic 1.3.2-1 (medium; bug #516388)
- [etch] - proftpd-basic <not-affected> (etch version not affected)
- [lenny] - proftpd-basic 1.3.1-17lenny2
CVE-2009-0542 (SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 ...)
{DSA-1730-1 DSA-1727-1}
- - proftpd 1.3.2-1 (medium; bug #516388)
+ - proftpd-dfsg 1.3.2-1 (medium; bug #516388)
[etch] - proftpd <not-affected> (etch version not affected)
[lenny] - proftpd 1.3.1-17lenny2
- - proftpd-basic 1.3.2-1 (medium; bug #516388)
- [etch] - proftpd-basic <not-affected> (etch version not affected)
- [lenny] - proftpd-basic 1.3.1-17lenny2
CVE-2009-0541 (Multiple cross-site scripting (XSS) vulnerabilities in Magento 1.2.0 ...)
NOT-FOR-US: Magento
CVE-2009-0540 (Cross-site scripting (XSS) vulnerability in Libero 5.3 SP5, and ...)
More information about the Secure-testing-commits
mailing list