[Secure-testing-commits] r18015 - data/CVE

Yves-Alexis Perez corsac at alioth.debian.org
Tue Jan 3 21:30:17 UTC 2012


Author: corsac
Date: 2012-01-03 21:30:17 +0000 (Tue, 03 Jan 2012)
New Revision: 18015

Modified:
   data/CVE/list
Log:
add not-for-us for recent CVEs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-01-03 21:14:24 UTC (rev 18014)
+++ data/CVE/list	2012-01-03 21:30:17 UTC (rev 18015)
@@ -43,23 +43,23 @@
 CVE-2012-0265
 	RESERVED
 CVE-2011-5046 (win32k.sys in the kernel-mode drivers in Microsoft Windows 7 ...)
-	TODO: check
+	NOTE: not-for-us (Microsoft Windows 7)
 CVE-2011-5045 (Cross-site scripting (XSS) vulnerability in details_view.php in PHP ...)
-	TODO: check
+	NOTE: not-for-us
 CVE-2011-5044 (SopCast 3.4.7.45585 uses weak permissions (Everyone:Full Control) for ...)
-	TODO: check
+	NOTE: not-for-us (SopCast not in Debian)
 CVE-2011-5043 (TomatoSoft Free Mp3 Player 1.0 allows remote attackers to cause a ...)
-	TODO: check
+	NOTE: not-for-us (TomatoSoft Free Mp3 Player not in Debian)
 CVE-2011-5042 (Cross-site scripting (XSS) vulnerability in inc/lib/lib.base.php in ...)
-	TODO: check
+	NOTE: not-for-us
 CVE-2011-5041 (Multiple cross-site scripting (XSS) vulnerabilities in Pulse Pro CMS ...)
-	TODO: check
+	NOTE: not-for-us (Pulse Pro CMS not in Debian)
 CVE-2011-5040 (Multiple cross-site scripting (XSS) vulnerabilities in Infoproject ...)
-	TODO: check
+	NOTE: not-for-us
 CVE-2011-5039 (Multiple SQL injection vulnerabilities in Infoproject Biznis Heroj ...)
-	TODO: check
+	NOTE: not-for-us
 CVE-2011-5038 (SQL injection vulnerability in hitCode hitAppoint 4.5.17 and possibly ...)
-	TODO: check
+	NOTE: not-for-us
 CVE-2011-5037 (Google V8 computes hash values for form parameters without restricting ...)
 	- libv8 <unfixed> (bug #653962)
 CVE-2011-5036 (Rack before 1.1.3, 1.2.x before 1.2.5, and 1.3.x before 1.3.6 computes ...)




More information about the Secure-testing-commits mailing list