[Secure-testing-commits] r14610 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Wed May 5 21:36:38 UTC 2010


Author: jmm-guest
Date: 2010-05-05 21:36:38 +0000 (Wed, 05 May 2010)
New Revision: 14610

Modified:
   data/CVE/list
Log:
parser-mysql unimportant
new piwik issue
new gnustep issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-05-05 21:16:31 UTC (rev 14609)
+++ data/CVE/list	2010-05-05 21:36:38 UTC (rev 14610)
@@ -1,3 +1,7 @@
+CVE-2010-XXXX [gdomap file disclosure]
+	- gnustep-base-runtime <unfixed>
+	[lenny] - gnustep-base-runtime <not-affected> (Not installed setuid root)
+        NOTE: http://thread.gmane.org/gmane.comp.lib.gnustep.bugs/12336
 CVE-2010-1723 (Directory traversal vulnerability in the iNetLanka Contact Us Draw ...)
 	TODO: check
 CVE-2010-1722 (Directory traversal vulnerability in the Online Market (com_market) ...)
@@ -721,6 +725,7 @@
 	RESERVED
 CVE-2010-1453
 	RESERVED
+	- piwik <itp> (bug #506933)
 CVE-2010-1452
 	RESERVED
 CVE-2010-1451
@@ -7144,7 +7149,7 @@
 	- naim <removed> (low; bug #559823)
 	[lenny] - naim <no-dsa> (Minor issue)
 	[etch] - naim <no-dsa> (Minor issue)
-	- parser-mysql <unfixed> (low; bug #559824)
+	- parser-mysql <unfixed> (unimportant; bug #559824)
 	- pinball 0.3.1-11 (low; bug #559825)
 	[lenny] - pinball <no-dsa> (Minor issue)
 	[etch] - pinball <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list