[Secure-testing-commits] r20788 - in data: CVE DSA

Moritz Muehlenhoff jmm at alioth.debian.org
Wed Jan 2 09:08:17 UTC 2013


Author: jmm
Date: 2013-01-02 09:08:16 +0000 (Wed, 02 Jan 2013)
New Revision: 20788

Modified:
   data/CVE/list
   data/DSA/list
Log:
mediawiki-extensions CVEfied
no-dsa: inkscape


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-02 07:40:11 UTC (rev 20787)
+++ data/CVE/list	2013-01-02 09:08:16 UTC (rev 20788)
@@ -1,4 +1,4 @@
-CVE-2012-XXXX [mediawiki-extensions rssreader injection]
+CVE-2012-6453 [mediawiki-extensions rssreader injection]
 	- mediawiki-extensions 2.11 (bug #696179)
 CVE-2012-6442
 	RESERVED
@@ -1972,6 +1972,7 @@
 CVE-2012-6076 [inkscape reads .eps files from /tmp instead of the current directory]
 	RESERVED
 	- inkscape 0.48.3.1-1.3 (low; bug #654341)
+	[squeeze] - inkscape <no-dsa> (Minor issue)
 	NOTE: https://bugs.launchpad.net/inkscape/+bug/911146
 CVE-2012-6075 [qemu e1000 emulated device guest-side buffer overflow]
 	RESERVED

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2013-01-02 07:40:11 UTC (rev 20787)
+++ data/DSA/list	2013-01-02 09:08:16 UTC (rev 20788)
@@ -1,4 +1,5 @@
 [30 Dec 2012] DSA-2596-1 mediawiki-extensions - cross-site scripting in RSSReader extension
+	{CVE-2012-6453}
 	[squeeze] - mediawiki-extensions 2.3squeeze2
 [30 Dec 2012] DSA-2595-1 ghostscript - buffer overflow
 	{CVE-2012-4405}




More information about the Secure-testing-commits mailing list