[Secure-testing-commits] r13162 - data/CVE
Steffen Joeris
white at alioth.debian.org
Sat Oct 31 11:39:13 UTC 2009
Author: white
Date: 2009-10-31 11:39:13 +0000 (Sat, 31 Oct 2009)
New Revision: 13162
Modified:
data/CVE/list
Log:
disclosure of two mahara issues, maintainer will upload fixed packages to unstable shortly, DSA pending
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2009-10-31 09:14:47 UTC (rev 13161)
+++ data/CVE/list 2009-10-31 11:39:13 UTC (rev 13162)
@@ -1337,10 +1337,14 @@
RESERVED
CVE-2009-3300
RESERVED
-CVE-2009-3299
+CVE-2009-3299 [mahara: cross-site scripting]
RESERVED
-CVE-2009-3298
+ - mahara <unfixed> (low)
+ NOTE: http://mahara.org/interaction/forum/topic.php?id=1170
+CVE-2009-3298 [mahara: privilege escalation]
RESERVED
+ - mahara <unfixed> (low)
+ NOTE: http://mahara.org/interaction/forum/topic.php?id=1169
CVE-2009-3297
RESERVED
CVE-2009-3296 (Multiple integer overflows in tiffread.c in CamlImages 2.2 might allow ...)
More information about the Secure-testing-commits
mailing list