[Secure-testing-commits] r23377 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Wed Aug 21 17:15:50 UTC 2013


Author: carnil
Date: 2013-08-21 17:15:50 +0000 (Wed, 21 Aug 2013)
New Revision: 23377

Modified:
   data/CVE/list
Log:
add fixed version for CVE-2011-4718/php5

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-08-21 16:48:59 UTC (rev 23376)
+++ data/CVE/list	2013-08-21 17:15:50 UTC (rev 23377)
@@ -31326,7 +31326,7 @@
 	- webkit <not-affected>
 	NOTE: Duplicate for chromebooks
 CVE-2011-4718 (Session fixation vulnerability in the Sessions subsystem in PHP before ...)
-	- php5 <unfixed>
+	- php5 5.5.2+dfsg-1
 	NOTE: 5.5.2 implements strict sessions RFC (https://wiki.php.net/rfc/strict_sessions)
 CVE-2011-4717 (Directory traversal vulnerability in zFTPServer Suite 6.0.0.52 allows ...)
 	NOT-FOR-US: zFTPServer Suite 




More information about the Secure-testing-commits mailing list