[Secure-testing-commits] r15770 - data/CVE

Jonathan Wiltshire jmw at alioth.debian.org
Fri Dec 31 01:24:10 UTC 2010


Author: jmw
Date: 2010-12-31 01:24:10 +0000 (Fri, 31 Dec 2010)
New Revision: 15770

Modified:
   data/CVE/list
Log:
tomcat6 is a duplicate CVE, already fixed

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-12-30 21:17:25 UTC (rev 15769)
+++ data/CVE/list	2010-12-31 01:24:10 UTC (rev 15770)
@@ -1320,8 +1320,9 @@
 CVE-2010-4313 (Unrestricted file upload vulnerability in fileman_file_upload.php in ...)
 	NOT-FOR-US: Orbis CMS
 CVE-2010-4312 (The default configuration of Apache Tomcat 6.x does not include the ...)
-	- tomcat6 <unfixed> (bug #608286)
-	TODO: check
+	- tomcat6 6.0.28-9 (bug #608286)
+	NOTE: Duplicate of CVE-2010-4172
+	NOTE: Verified fixed by comparing source and patch (jmw)
 CVE-2010-4311 (Free Simple Software 1.0 stores passwords in cleartext, which allows ...)
 	NOT-FOR-US: Free Simple Software
 CVE-2010-4310




More information about the Secure-testing-commits mailing list