[Secure-testing-commits] r13352 - data/CVE

Raphael Geissert geissert at alioth.debian.org
Mon Nov 23 16:59:46 UTC 2009


Author: geissert
Date: 2009-11-23 16:59:45 +0000 (Mon, 23 Nov 2009)
New Revision: 13352

Modified:
   data/CVE/list
Log:
updates on the nginx issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-11-23 09:14:43 UTC (rev 13351)
+++ data/CVE/list	2009-11-23 16:59:45 UTC (rev 13352)
@@ -106,9 +106,9 @@
 CVE-2009-3964 (SQL injection vulnerability in the NinjaMonials (com_ninjacentral) ...)
 	NOT-FOR-US: component for Joomla!
 CVE-2009-XXXX [ngingx webdav directory traversal]
-	- nginx <unfixed> (low; bug #557389)
-	TODO: check
-	NOTE: http://archives.neohapsis.com/archives/fulldisclosure/2009-09/0379.html
+	- nginx 0.7.63-1 (low; bug #557389)
+	[etch] - nginx <no-dsa> (upload rights required)
+	[lenny] - nginx <no-dsa> (upload rights required)
 CVE-2009-XXXX [dovecot 0777 base_dir creation]
 	- dovecot <unfixed> (medium)
 	NOTE: http://www.dovecot.org/list/dovecot-news/2009-November/000143.html




More information about the Secure-testing-commits mailing list