[Secure-testing-commits] r20197 - data/CVE
Luciano Bello
luciano at alioth.debian.org
Wed Sep 19 21:01:28 UTC 2012
Author: luciano
Date: 2012-09-19 21:01:27 +0000 (Wed, 19 Sep 2012)
New Revision: 20197
Modified:
data/CVE/list
Log:
smarty issue
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2012-09-19 20:47:29 UTC (rev 20196)
+++ data/CVE/list 2012-09-19 21:01:27 UTC (rev 20197)
@@ -1,5 +1,8 @@
-CVE-2012-XXXX (fwknop 2.0.3: Multiple security issues)
+CVE-2012-XXXX [fwknop 2.0.3: Multiple security issues]
- fwknop <unfixed> (bug #688151)
+CVE-2012-XXXX [php-Smarty: XSS in Smarty exception messages]
+ - smarty3 <unfixed> (bug #688153)
+ - smarty <not-affected> (Vulnerable code not present)
CVE-2012-4969 (Use-after-free vulnerability in the CMshtmlEd::Exec function in ...)
TODO: check
CVE-2012-4968 (Multiple cross-site scripting (XSS) vulnerabilities in SilverStripe ...)
More information about the Secure-testing-commits
mailing list