[Secure-testing-commits] r20955 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Thu Jan 17 18:07:15 UTC 2013


Author: carnil
Date: 2013-01-17 18:07:15 +0000 (Thu, 17 Jan 2013)
New Revision: 20955

Modified:
   data/CVE/list
Log:
add notes for CVE-2012-6112, tinymce

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-17 17:24:44 UTC (rev 20954)
+++ data/CVE/list	2013-01-17 18:07:15 UTC (rev 20955)
@@ -3469,6 +3469,10 @@
 	RESERVED
 CVE-2012-6112
 	RESERVED
+	NOTE: http://www.tinymce.com/develop/changelog/?type=phpspell
+	NOTE: patch: https://github.com/tinymce/tinymce_spellchecker_php/commit/22910187bfb9edae90c26e10100d8145b505b974
+	NOTE: http://www.tinymce.com/forum/viewtopic.php?id=30036
+	TODO: check (which packages might be affected? e.g. moodle and workpress include spellchecker/classes/GoogleSpell.php) 
 CVE-2012-6111 [gnome-keyring does not discard stored secrets in some cases]
 	RESERVED
 	TODO: check




More information about the Secure-testing-commits mailing list