[Secure-testing-commits] r20090 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Tue Sep 4 13:27:15 UTC 2012


Author: jmm
Date: 2012-09-04 13:27:15 +0000 (Tue, 04 Sep 2012)
New Revision: 20090

Modified:
   data/CVE/list
Log:
cakephp not affected

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-09-04 09:19:03 UTC (rev 20089)
+++ data/CVE/list	2012-09-04 13:27:15 UTC (rev 20090)
@@ -879,11 +879,9 @@
 	RESERVED
 CVE-2012-4399 [cakephp XXE injection]
 	RESERVED
-	- cakephp <unfixed>
-	TODO: Check if Debian-packages are affected. Advisory says 2.x
+	- cakephp <not-affected> (Does not affect 1.3)
 	NOTE: http://seclists.org/bugtraq/2012/Jul/101
 	NOTE: http://bakery.cakephp.org/articles/markstory/2012/07/14/security_release_-_cakephp_2_1_5_2_2_1
-	NOTE: http://osvdb.org/show/osvdb/84042
 CVE-2012-4398
 	RESERVED
 	- linux <unfixed>




More information about the Secure-testing-commits mailing list