[Secure-testing-commits] r20457 - data/CVE

Joey Hess joeyh at alioth.debian.org
Tue Nov 6 21:14:23 UTC 2012


Author: joeyh
Date: 2012-11-06 21:14:23 +0000 (Tue, 06 Nov 2012)
New Revision: 20457

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-11-06 13:40:37 UTC (rev 20456)
+++ data/CVE/list	2012-11-06 21:14:23 UTC (rev 20457)
@@ -1,3 +1,65 @@
+CVE-2012-5848
+	RESERVED
+CVE-2012-5847
+	RESERVED
+CVE-2012-5846
+	RESERVED
+CVE-2012-5845
+	RESERVED
+CVE-2012-5844
+	RESERVED
+CVE-2012-5843
+	RESERVED
+CVE-2012-5842
+	RESERVED
+CVE-2012-5841
+	RESERVED
+CVE-2012-5840
+	RESERVED
+CVE-2012-5839
+	RESERVED
+CVE-2012-5838
+	RESERVED
+CVE-2012-5837
+	RESERVED
+CVE-2012-5836
+	RESERVED
+CVE-2012-5835
+	RESERVED
+CVE-2012-5834
+	RESERVED
+CVE-2012-5833
+	RESERVED
+CVE-2012-5832
+	RESERVED
+CVE-2012-5831
+	RESERVED
+CVE-2012-5830
+	RESERVED
+CVE-2012-5829
+	RESERVED
+CVE-2012-5828
+	RESERVED
+CVE-2012-5827
+	RESERVED
+CVE-2012-5826
+	RESERVED
+CVE-2011-5243 (TwitterOAuth does not verify that the server hostname matches a domain ...)
+	TODO: check
+CVE-2011-5242 (tmhOAuth before 0.61 does not verify that the server hostname matches ...)
+	TODO: check
+CVE-2011-5241 (Services_Twitter 0.6.3 does not verify that the server hostname ...)
+	TODO: check
+CVE-2011-5240 (Magento 1.5 and 1.6.2 does not verify that the server hostname matches ...)
+	TODO: check
+CVE-2011-5239 (CiviCRM 4.0.5 and 4.1.1 does not verify that the server hostname ...)
+	TODO: check
+CVE-2011-5238 (google-checkout-php-sample-code before 1.3.2 does not verify that the ...)
+	TODO: check
+CVE-2011-5237 (PayPal WPS ToolKit does not verify that the server hostname matches a ...)
+	TODO: check
+CVE-2011-5236 (Moneris eSelectPlus 2.03 PHP API does not verify that the server ...)
+	TODO: check
 CVE-2012-5825 (Tweepy does not verify that the server hostname matches a domain name ...)
 	- tweepy <unfixed> (low; bug #692444)
 CVE-2012-5824 (Trillian 5.1.0.19 does not verify that the server hostname matches a ...)




More information about the Secure-testing-commits mailing list