[Secure-testing-commits] r14886 - data/CVE

Jonathan Wiltshire jmw-guest at alioth.debian.org
Sat Jun 19 22:40:58 UTC 2010


Author: jmw-guest
Date: 2010-06-19 22:40:58 +0000 (Sat, 19 Jun 2010)
New Revision: 14886

Modified:
   data/CVE/list
Log:
Record bug numbers for CVE-2010-1647 and CVE-2010-1648, severity medium

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-06-18 21:14:21 UTC (rev 14885)
+++ data/CVE/list	2010-06-19 22:40:58 UTC (rev 14886)
@@ -1640,10 +1640,10 @@
 CVE-2010-1649 (Multiple cross-site scripting (XSS) vulnerabilities in the back end in ...)
 	NOT-FOR-US: Joomla
 CVE-2010-1648 (Cross-site request forgery (CSRF) vulnerability in the login interface ...)
-	- mediawiki <unfixed>
+	- mediawiki <unfixed> (bug #585918; medium)
 	NOTE: http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-May/000091.html
 CVE-2010-1647 (Cross-site scripting (XSS) vulnerability in MediaWiki 1.15 before ...)
-	- mediawiki <unfixed>
+	- mediawiki <unfixed> (bug #585918; medium)
 	NOTE: http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-May/000091.html
 CVE-2010-1646 (The secure path feature in env.c in sudo 1.3.1 through 1.6.9p22 and ...)
 	{DSA-2062-1}




More information about the Secure-testing-commits mailing list