[Secure-testing-commits] r20096 - data/CVE

Joey Hess joeyh at alioth.debian.org
Wed Sep 5 09:14:24 UTC 2012


Author: joeyh
Date: 2012-09-05 09:14:24 +0000 (Wed, 05 Sep 2012)
New Revision: 20096

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-09-05 05:34:43 UTC (rev 20095)
+++ data/CVE/list	2012-09-05 09:14:24 UTC (rev 20096)
@@ -1,3 +1,5 @@
+CVE-2011-3090 (Race condition in Google Chrome before 19.0.1084.46 allows remote ...)
+	TODO: check
 CVE-2012-4746 (Cross-site request forgery (CSRF) vulnerability in accessaccount.cgi ...)
 	TODO: check
 CVE-2012-4745 (Cross-site scripting (XSS) vulnerability in admin/login.asp in Acuity ...)
@@ -915,6 +917,7 @@
 CVE-2012-4405
 	RESERVED
 CVE-2012-4404 [moinmoin virtual groups and ACLs evaluation issue]
+	RESERVED
 	- moin 1.9.4-8
 	NOTE: http://hg.moinmo.in/moin/1.9/rev/7b9f39289e16
 CVE-2012-4403
@@ -1876,7 +1879,7 @@
 	RESERVED
 CVE-2012-3982
 	RESERVED
-CVE-2012-4747 [Directory Browsing issue]
+CVE-2012-4747 (Bugzilla 2.x and 3.x through 3.6.11, 3.7.x and 4.0.x before 4.0.8, ...)
 	- bugzilla <removed> (low)
 	[squeeze] - bugzilla <no-dsa> (Minor issue)
 	- bugzilla4 <itp> (bug #669643)
@@ -12162,7 +12165,7 @@
 	RESERVED
 CVE-2011-4774
 	RESERVED
-CVE-2011-5146 [bokken: insecure tempfile]
+CVE-2011-5146 (Bokken before 1.6 and 1.5-x before 1.5-3 for Debian allows local users ...)
 	- bokken 1.5-3 (bug #651931)
 CVE-2012-0120 (Unspecified vulnerability in the MySQL Server component in Oracle ...)
 	{DSA-2429-1}




More information about the Secure-testing-commits mailing list