[Secure-testing-commits] r15950 - data/CVE

Yves-Alexis Perez corsac at alioth.debian.org
Mon Jan 24 13:16:37 UTC 2011


Author: corsac
Date: 2011-01-24 13:16:33 +0000 (Mon, 24 Jan 2011)
New Revision: 15950

Modified:
   data/CVE/list
Log:
after some analysis, gollem in lenny doesn't seem vulnerable


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-01-24 08:46:09 UTC (rev 15949)
+++ data/CVE/list	2011-01-24 13:16:33 UTC (rev 15950)
@@ -4610,6 +4610,7 @@
 CVE-2010-3447 [horde gollem XSS]
 	RESERVED
 	- gollem 1.1.1+debian0-1.1 (bug #598585)
+	[lenny] - gollem <not-affected> ($filename not printed directly and passed through htmlspecialchars())
 	NOTE: http://bugs.horde.org/ticket/9191
 CVE-2010-3446
 	RESERVED




More information about the Secure-testing-commits mailing list