[Secure-testing-commits] r21018 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Tue Jan 22 21:49:39 UTC 2013


Author: jmm
Date: 2013-01-22 21:49:39 +0000 (Tue, 22 Jan 2013)
New Revision: 21018

Modified:
   data/CVE/list
Log:
libapache2-mod-auth-openid, horde3 no-dsa

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-22 21:42:52 UTC (rev 21017)
+++ data/CVE/list	2013-01-22 21:49:39 UTC (rev 21018)
@@ -12651,7 +12651,8 @@
 CVE-2012-2761
 	RESERVED
 CVE-2012-2760 (mod_auth_openid before 0.7 for Apache uses world-readable permissions ...)
-	- libapache2-mod-auth-openid 0.7-0.1 (bug #674165)
+	- libapache2-mod-auth-openid 0.7-0.1 (low; bug #674165)
+	[squeeze] - libapache2-mod-auth-openid <no-dsa> (Minor issue)
 CVE-2012-2759 (Cross-site scripting (XSS) vulnerability in login-with-ajax.php in the ...)
 	NOT-FOR-US: Wordpress plugin
 CVE-2012-2758
@@ -17235,8 +17236,8 @@
 CVE-2012-0910
 	RESERVED
 CVE-2012-0909 (Cross-site scripting (XSS) vulnerability in Horde_Form in Horde ...)
-	- horde3 3.3.12+debian0-2.2
-	[squeeze] - horde3 <unfixed>
+	- horde3 3.3.12+debian0-2.2 (low)
+	[squeeze] - horde3 <no-dsa> (Minor issue)
 CVE-2012-0907 (Directory traversal vulnerability in the web player in NeoAxis NeoAxis ...)
 	NOT-FOR-US: NeoAxis NeoAxis web player
 CVE-2012-0906 (SQL injection vulnerability in the Moviebase addon for deV!L'z ...)




More information about the Secure-testing-commits mailing list