[Secure-testing-commits] r24932 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Dec 29 09:19:21 UTC 2013


Author: carnil
Date: 2013-12-29 09:19:21 +0000 (Sun, 29 Dec 2013)
New Revision: 24932

Modified:
   data/CVE/list
Log:
Update entry for CVE-2013-7078

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-12-29 08:53:35 UTC (rev 24931)
+++ data/CVE/list	2013-12-29 09:19:21 UTC (rev 24932)
@@ -826,6 +826,7 @@
 CVE-2013-7082 (Cross-site scripting (XSS) vulnerability in the errorAction method in ...)
 	- typo3-src 4.5.32+dfsg1-1 (bug #731999)
 	NOTE: https://review.typo3.org/#/c/26176/
+	NOTE: actually the CVE assigned for Typo3 Flow, correspond to CVE-2013-7078
 CVE-2013-7081
 	RESERVED
 	- typo3-src 4.5.32+dfsg1-1 (bug #731999)
@@ -837,9 +838,10 @@
 	RESERVED
 	- typo3-src 4.5.32+dfsg1-1 (bug #731999)
 	NOTE: https://review.typo3.org/#/c/26179/
-CVE-2013-7078
+CVE-2013-7078 [Cross-Site Scripting]
 	RESERVED
 	- typo3-src 4.5.32+dfsg1-1 (bug #731999)
+	NOTE: https://review.typo3.org/#/c/26176/
 CVE-2013-7077 (Cross-site scripting (XSS) vulnerability in the Backend User ...)
 	- typo3-src 4.5.32+dfsg1-1 (bug #731999)
 CVE-2013-7076 (Cross-site scripting (XSS) vulnerability in Extension Manager in TYPO3 ...)




More information about the Secure-testing-commits mailing list