[Secure-testing-commits] r15866 - in data: . CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Jan 14 22:43:43 UTC 2011


Author: jmm
Date: 2011-01-14 22:43:43 +0000 (Fri, 14 Jan 2011)
New Revision: 15866

Modified:
   data/CVE/list
   data/next-point-update.txt
Log:
git spu upload
zhcon issue is actually in libggi


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-01-14 22:35:48 UTC (rev 15865)
+++ data/CVE/list	2011-01-14 22:43:43 UTC (rev 15866)
@@ -391,8 +391,7 @@
 	NOTE: Negligable privilege escalation
 	NOTE: CVE ID requested
 CVE-2011-XXXX [Crash with long GGI_DISPLAY environment variable]
-	- zhcon <unfixed> (bug #608981)
-	TODO: check
+	- libggi <unfixed> (bug #608981)
 CVE-2011-0343 [syslog-ng log permissions]
 	RESERVED
 	- syslog-ng 3.1.3-2 (bug #608491)
@@ -2882,6 +2881,7 @@
 	- vlc 1.1.3-1squeeze1
 CVE-2010-3906 (Cross-site scripting (XSS) vulnerability in Gitweb 1.7.3.3 and earlier ...)
 	- git-core <removed>
+	[lenny] - git-core <no-dsa> (Will be fixed in spu)
 	- git 1:1.7.2.3-2.2
 CVE-2010-3905 (The password reset feature in the administrator interface for ...)
 	- eucalyptus <unfixed> (bug #608289)

Modified: data/next-point-update.txt
===================================================================
--- data/next-point-update.txt	2011-01-14 22:35:48 UTC (rev 15865)
+++ data/next-point-update.txt	2011-01-14 22:43:43 UTC (rev 15866)
@@ -29,6 +29,8 @@
 	[lenny] - libcgi-pm-perl 3.38-2lenny2
 CVE-2010-4411
 	[lenny] - libcgi-pm-perl 3.38-2lenny2
+CVE-2010-3906
+	[lenny] - git-core 1.5.6.5-3+lenny3.3
 
 
 
@@ -37,3 +39,5 @@
 
 
 
+
+




More information about the Secure-testing-commits mailing list