[Secure-testing-commits] r17005 - data/CVE
Joey Hess
joeyh at alioth.debian.org
Tue Jul 26 21:14:40 UTC 2011
Author: joeyh
Date: 2011-07-26 21:14:40 +0000 (Tue, 26 Jul 2011)
New Revision: 17005
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2011-07-26 21:09:46 UTC (rev 17004)
+++ data/CVE/list 2011-07-26 21:14:40 UTC (rev 17005)
@@ -336,6 +336,7 @@
NOTE: Only supported behind an authenticated HTTP zone
CVE-2011-2719 [PMASA-2011-12 phpMyAdmin Possible superglobal and local variables manipulation in swekey authentication.]
RESERVED
+ {DSA-2286-1}
- phpmyadmin 4:3.4.3.2-1 (low)
[lenny] - phpmyadmin <not-affected> (Vulnerable code not present)
CVE-2011-2718 [PMASA-2011-11 phpMyAdmin Local file inclusion vulnerability and code execution.]
@@ -543,6 +544,7 @@
[lenny] - phpmyadmin <not-affected> (Vulnerable code not present)
CVE-2011-2642 [PMASA-2011-9 XSS in table Print view.]
RESERVED
+ {DSA-2286-1}
- phpmyadmin 4:3.4.3.2-1
CVE-2011-XXXX [pyro: insecure use of temporary pid file]
- pyro <unfixed> (low; bug #631912)
@@ -886,16 +888,20 @@
CVE-2011-2509
RESERVED
CVE-2011-2508 (Directory traversal vulnerability in libraries/display_tbl.lib.php in ...)
+ {DSA-2286-1}
- phpmyadmin 4:3.4.3.1-1
[lenny] - phpmyadmin <not-affected> (Vulnerable code not present)
CVE-2011-2507 (libraries/server_synchronize.lib.php in the Synchronize implementation ...)
+ {DSA-2286-1}
- phpmyadmin 4:3.4.3.1-1 (unimportant)
[lenny] - phpmyadmin <not-affected> (Vulnerable code not present)
NOTE: neutralized by Suhosin patch
CVE-2011-2506 (setup/lib/ConfigGenerator.class.php in phpMyAdmin 3.x before 3.3.10.2 ...)
+ {DSA-2286-1}
- phpmyadmin 4:3.4.3.1-1 (low)
[lenny] - phpmyadmin <not-affected> (Vulnerable code not present)
CVE-2011-2505 (libraries/auth/swekey/swekey.auth.lib.php in the Swekey authentication ...)
+ {DSA-2286-1}
- phpmyadmin 4:3.4.3.1-1
[lenny] - phpmyadmin <not-affected> (Vulnerable code not present)
CVE-2011-2504
More information about the Secure-testing-commits
mailing list