[Secure-testing-commits] r13977 - in data: . CVE

Giuseppe Iuculano derevko-guest at alioth.debian.org
Sat Jan 30 21:54:11 UTC 2010


Author: derevko-guest
Date: 2010-01-30 21:54:10 +0000 (Sat, 30 Jan 2010)
New Revision: 13977

Modified:
   data/CVE/list
   data/spu-candidates.txt
Log:
spu notifications

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-01-30 21:15:36 UTC (rev 13976)
+++ data/CVE/list	2010-01-30 21:54:10 UTC (rev 13977)
@@ -556,11 +556,10 @@
 	[lenny] - acidbase <no-dsa> (Minor issue)
 	[etch] - acidbase <no-dsa> (Minor issue)
 CVE-2009-4590 (Cross-site scripting (XSS) vulnerability in base_local_rules.php in ...)
-	- acidbase <unfixed>
+	- acidbase 1.4.4-1
 	[lenny] - acidbase <no-dsa> (Minor issue)
 	[etch] - acidbase <no-dsa> (Minor issue)
 	NOTE: 1.4.5 fixed more XSS issues in this file
-	TODO: report bug
 CVE-2009-4588 (Heap-based buffer overflow in the WindsPlayerIE.View.1 ActiveX control ...)
 	NOT-FOR-US: AwingSoft Awakening
 CVE-2009-4587 (Cherokee Web Server 0.5.4 allows remote attackers to cause a denial of ...)

Modified: data/spu-candidates.txt
===================================================================
--- data/spu-candidates.txt	2010-01-30 21:15:36 UTC (rev 13976)
+++ data/spu-candidates.txt	2010-01-30 21:54:10 UTC (rev 13977)
@@ -7,6 +7,7 @@
 --
 
 acidbase (CVE-2009-4590, CVE-2009-4591, CVE-2009-4592)
+notified maintainer
 
 --
 
@@ -45,6 +46,7 @@
 
 centerim (CVE-2008-4776)
 #559782
+notified maintainer
 
 --
 
@@ -95,6 +97,7 @@
 
 libgnucrypto-java (CVE-2008-5659) 
 #559789
+removed
 
 --
 




More information about the Secure-testing-commits mailing list