[Secure-testing-commits] r20197 - data/CVE

Luciano Bello luciano at alioth.debian.org
Wed Sep 19 21:01:28 UTC 2012


Author: luciano
Date: 2012-09-19 21:01:27 +0000 (Wed, 19 Sep 2012)
New Revision: 20197

Modified:
   data/CVE/list
Log:
smarty issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-09-19 20:47:29 UTC (rev 20196)
+++ data/CVE/list	2012-09-19 21:01:27 UTC (rev 20197)
@@ -1,5 +1,8 @@
-CVE-2012-XXXX (fwknop 2.0.3: Multiple security issues)
+CVE-2012-XXXX [fwknop 2.0.3: Multiple security issues]
     - fwknop <unfixed> (bug #688151)
+CVE-2012-XXXX [php-Smarty: XSS in Smarty exception messages]
+	- smarty3 <unfixed> (bug #688153)
+	- smarty <not-affected> (Vulnerable code not present)
 CVE-2012-4969 (Use-after-free vulnerability in the CMshtmlEd::Exec function in ...)
 	TODO: check
 CVE-2012-4968 (Multiple cross-site scripting (XSS) vulnerabilities in SilverStripe ...)




More information about the Secure-testing-commits mailing list