[Secure-testing-commits] r20725 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Fri Dec 28 14:28:38 UTC 2012


Author: carnil
Date: 2012-12-28 14:28:37 +0000 (Fri, 28 Dec 2012)
New Revision: 20725

Modified:
   data/CVE/list
Log:
add jenkins CVEs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-12-28 09:49:29 UTC (rev 20724)
+++ data/CVE/list	2012-12-28 14:28:37 UTC (rev 20725)
@@ -1948,12 +1948,21 @@
 	RESERVED
 CVE-2012-6075
 	RESERVED
-CVE-2012-6074
+CVE-2012-6074 [cross-site scripting vulnerability]
 	RESERVED
-CVE-2012-6073
+	- jenkins <unfixed>
+	NOTE: https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2012-11-20
+	NOTE: http://www.openwall.com/lists/oss-security/2012/12/28/1
+CVE-2012-6073 [open redirect]
 	RESERVED
-CVE-2012-6072
+	- jenkins <unfixed>
+	NOTE: https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2012-11-20
+	NOTE: http://www.openwall.com/lists/oss-security/2012/12/28/1
+CVE-2012-6072 [HTTP response splitting]
 	RESERVED
+	- jenkins <unfixed>
+	NOTE: https://wiki.jenkins-ci.org/display/SECURITY/Jenkins+Security+Advisory+2012-11-20
+	NOTE: http://www.openwall.com/lists/oss-security/2012/12/28/1
 CVE-2012-6071 [libnusoap-php: Curl insecure usage]
 	RESERVED
 	- nusoap 0.7.3-5 (low; bug #696707)




More information about the Secure-testing-commits mailing list