[Secure-testing-commits] r13366 - in data: . CVE

Michael Gilbert michael.s.gilbert at gmail.com
Tue Nov 24 19:10:36 UTC 2009


On Tue, 24 Nov 2009 18:42:56 +0000, Moritz Muehlenhoff wrote:
>  CVE-2009-3300 (Multiple cross-site scripting (XSS) vulnerabilities in the Identity ...)
>  	- shibboleth-sp2 2.3+dfsg-1 (medium; bug #555608)
>  	- shibboleth-sp <removed> (medium)
> -	- xmltooling 1.3.1-1
> +	NOTE: xmltooling also needs to be updated, changed in sid in 1.3.1-1

might this be better to track as a TODO since NOTEs will not show up in
any of the "stuff to be done" lists, which could potentially cause the
problem to be forgotten about in the future?

mike



More information about the Secure-testing-commits mailing list