[Secure-testing-commits] r13352 - data/CVE
Raphael Geissert
geissert at alioth.debian.org
Mon Nov 23 16:59:46 UTC 2009
Author: geissert
Date: 2009-11-23 16:59:45 +0000 (Mon, 23 Nov 2009)
New Revision: 13352
Modified:
data/CVE/list
Log:
updates on the nginx issue
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2009-11-23 09:14:43 UTC (rev 13351)
+++ data/CVE/list 2009-11-23 16:59:45 UTC (rev 13352)
@@ -106,9 +106,9 @@
CVE-2009-3964 (SQL injection vulnerability in the NinjaMonials (com_ninjacentral) ...)
NOT-FOR-US: component for Joomla!
CVE-2009-XXXX [ngingx webdav directory traversal]
- - nginx <unfixed> (low; bug #557389)
- TODO: check
- NOTE: http://archives.neohapsis.com/archives/fulldisclosure/2009-09/0379.html
+ - nginx 0.7.63-1 (low; bug #557389)
+ [etch] - nginx <no-dsa> (upload rights required)
+ [lenny] - nginx <no-dsa> (upload rights required)
CVE-2009-XXXX [dovecot 0777 base_dir creation]
- dovecot <unfixed> (medium)
NOTE: http://www.dovecot.org/list/dovecot-news/2009-November/000143.html
More information about the Secure-testing-commits
mailing list