[Secure-testing-commits] r13162 - data/CVE

Steffen Joeris white at alioth.debian.org
Sat Oct 31 11:39:13 UTC 2009


Author: white
Date: 2009-10-31 11:39:13 +0000 (Sat, 31 Oct 2009)
New Revision: 13162

Modified:
   data/CVE/list
Log:
disclosure of two mahara issues, maintainer will upload fixed packages to unstable shortly, DSA pending

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-10-31 09:14:47 UTC (rev 13161)
+++ data/CVE/list	2009-10-31 11:39:13 UTC (rev 13162)
@@ -1337,10 +1337,14 @@
 	RESERVED
 CVE-2009-3300
 	RESERVED
-CVE-2009-3299
+CVE-2009-3299 [mahara: cross-site scripting]
 	RESERVED
-CVE-2009-3298
+	- mahara <unfixed> (low)
+	NOTE: http://mahara.org/interaction/forum/topic.php?id=1170
+CVE-2009-3298 [mahara: privilege escalation]
 	RESERVED
+	- mahara <unfixed> (low)
+	NOTE: http://mahara.org/interaction/forum/topic.php?id=1169
 CVE-2009-3297
 	RESERVED
 CVE-2009-3296 (Multiple integer overflows in tiffread.c in CamlImages 2.2 might allow ...)




More information about the Secure-testing-commits mailing list