[Secure-testing-commits] r19603 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Tue Jun 26 10:15:13 UTC 2012


Author: fgeek-guest
Date: 2012-06-26 10:15:12 +0000 (Tue, 26 Jun 2012)
New Revision: 19603

Modified:
   data/CVE/list
Log:
Added bug report for viewvc CVE-2012-3356 / CVE-2012-3357

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-06-26 10:01:43 UTC (rev 19602)
+++ data/CVE/list	2012-06-26 10:15:12 UTC (rev 19603)
@@ -886,7 +886,7 @@
 	RESERVED
 CVE-2012-3357 [viewvc log msg leak in SVN revision view with unreadable copy source]
 	RESERVED
-	- viewvc <unfixed>
+	- viewvc <unfixed> (bug #679069)
 	TODO: Check if 1.1.5-1.1 is affected
 	NOTE: http://viewvc.tigris.org/issues/show_bug.cgi?id=353
 	NOTE: http://viewvc.tigris.org/source/browse/viewvc?view=rev&revision=2755
@@ -896,7 +896,7 @@
 	NOTE: http://viewvc.tigris.org/source/browse/viewvc?view=rev&revision=2760
 CVE-2012-3356 [viewvc complete authz support for remote SVN views]
 	RESERVED
-	- viewvc <unfixed>
+	- viewvc <unfixed> (bug #679069)
 	TODO: Check if 1.1.5-1.1 is affected
 	NOTE: http://viewvc.tigris.org/source/browse/viewvc?view=rev&revision=2758
 CVE-2012-3355 [rhythmbox insecure temporary directory used by loading template files]




More information about the Secure-testing-commits mailing list