[Secure-testing-commits] r19988 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Mon Aug 20 09:34:24 UTC 2012


Author: jmm
Date: 2012-08-20 09:34:24 +0000 (Mon, 20 Aug 2012)
New Revision: 19988

Modified:
   data/CVE/list
Log:
filed bugs for piwigo and condor
new postgres issues



Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-08-20 09:02:44 UTC (rev 19987)
+++ data/CVE/list	2012-08-20 09:34:24 UTC (rev 19988)
@@ -186,7 +186,7 @@
 CVE-2012-4272 (Multiple cross-site scripting (XSS) vulnerabilities in the 2 Click ...)
 	TODO: check
 CVE-2012-4271 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
-	TODO: check
+	NOT-FOR-US: Wordpress plugin
 CVE-2012-4270 (Cross-site scripting (XSS) vulnerability in eFront 3.6.11 allows ...)
 	TODO: check
 CVE-2012-4269 (Unrestricted file upload vulnerability in eFront 3.6.11 allows remote ...)
@@ -1842,8 +1842,12 @@
 	RESERVED
 CVE-2012-3489
 	RESERVED
+	- postgresql-9.1 9.1.5-1
+	- postgresql-8.4 <unfixed>
 CVE-2012-3488
 	RESERVED
+	- postgresql-9.1 9.1.5-1
+	- postgresql-8.4 <unfixed>
 CVE-2012-3487
 	RESERVED
 CVE-2012-3486
@@ -2054,6 +2058,7 @@
 	NOTE: this is at least fixed in 4.00, I could not trace this back to an exact version
 CVE-2012-3416
 	RESERVED
+	- condor <unfixed> (bug #685366)
 CVE-2012-3415
 	RESERVED
 	- plpupload <itp> (bug #668396)
@@ -5005,11 +5010,9 @@
 CVE-2012-2210 (The Sony Bravia TV KDL-32CX525 allows remote attackers to cause a ...)
 	NOT-FOR-US: Sony Bravia
 CVE-2012-2209 (Multiple cross-site scripting (XSS) vulnerabilities in admin.php in ...)
-	- piwigo <unfixed>
-	TODO: check
+	- piwigo <unfixed> (bug #685364)
 CVE-2012-2208 (Directory traversal vulnerability in upgrade.php in Piwigo before ...)
-	- piwigo <unfixed>
-	TODO: check
+	- piwigo <unfixed> (bug #685364)
 CVE-2012-2207
 	RESERVED
 CVE-2012-2206 (The Web Gateway component in IBM WebSphere MQ File Transfer Edition ...)




More information about the Secure-testing-commits mailing list