[Secure-testing-commits] r11947 - data/CVE

Giuseppe Iuculano derevko-guest at alioth.debian.org
Thu May 21 16:57:03 UTC 2009


Author: derevko-guest
Date: 2009-05-21 16:57:03 +0000 (Thu, 21 May 2009)
New Revision: 11947

Modified:
   data/CVE/list
Log:
CVE-2009-1669: smarty is affected, severity very low

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-05-21 14:46:38 UTC (rev 11946)
+++ data/CVE/list	2009-05-21 16:57:03 UTC (rev 11947)
@@ -17,7 +17,9 @@
 CVE-2009-1670 (user/index.php in TCPDB 3.8 does not require administrative ...)
 	NOT-FOR-US: TCPDB
 CVE-2009-1669 (The smarty_function_math function in libs/plugins/function.math.php in ...)
-	TODO: check. It should be windows specific.
+	- smarty <unfixed> (low; bug #529810)
+	[etch] - smarty <not-affected> (Vulnerable code not present)
+	[lenny] - smarty <no-dsa> (Minor issue)
 CVE-2009-1668 (TYPSoft FTP Server 1.11 allows remote attackers to cause a denial of ...)
 	NOT-FOR-US: TYPSoft
 CVE-2009-1667 (Stack-based buffer overflow in Mini-stream CastRipper 2.50.70 allows ...)




More information about the Secure-testing-commits mailing list