[Secure-testing-commits] r21041 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Fri Jan 25 09:42:05 UTC 2013


Author: fgeek-guest
Date: 2013-01-25 09:42:04 +0000 (Fri, 25 Jan 2013)
New Revision: 21041

Modified:
   data/CVE/list
Log:
new wordpress issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-25 09:14:34 UTC (rev 21040)
+++ data/CVE/list	2013-01-25 09:42:04 UTC (rev 21041)
@@ -1,3 +1,18 @@
+CVE-2013-XXXX [wordpress: server-side request forgery and remote port scanning using pingbacks]
+	- wordpress <unfixed> (bug #698916)
+	TODO: check if squeeze is affected
+	NOTE: http://wordpress.org/news/2013/01/wordpress-3-5-1/
+	NOTE: CVE request http://www.openwall.com/lists/oss-security/2013/01/25/7
+CVE-2013-XXXX [wordpress: XSS fixed in 3.5.1]
+	- wordpress <unfixed> (bug #698916)
+	TODO: check if squeeze is affected
+	NOTE: http://wordpress.org/news/2013/01/wordpress-3-5-1/
+	NOTE: CVE request http://www.openwall.com/lists/oss-security/2013/01/25/7
+CVE-2013-XXXX [wordpress: XSS in external library Plupload fixed in 3.5.1]
+	- wordpress <unfixed> (bug #698916)
+	TODO: check if squeeze is affected
+	NOTE: http://wordpress.org/news/2013/01/wordpress-3-5-1/
+	NOTE: CVE request http://www.openwall.com/lists/oss-security/2013/01/25/7
 CVE-2013-XXXX [ZoneMinder Video Server arbitrary command execution vulnerability]
 	- zoneminder <unfixed> (bug #698910)
 	NOTE: CVE requested




More information about the Secure-testing-commits mailing list