[Secure-testing-commits] r22964 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Tue Jul 16 15:46:19 UTC 2013


Author: carnil
Date: 2013-07-16 15:46:18 +0000 (Tue, 16 Jul 2013)
New Revision: 22964

Modified:
   data/CVE/list
Log:
add three CVEs (unverified yet) for minidlna

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-07-16 15:37:23 UTC (rev 22963)
+++ data/CVE/list	2013-07-16 15:46:18 UTC (rev 22964)
@@ -4601,8 +4601,11 @@
 	RESERVED
 CVE-2013-2746
 	RESERVED
-CVE-2013-2745
+CVE-2013-2745 [SQL Injection]
 	RESERVED
+	- minidlna <unfixed>
+	NOTE: http://www.securityfocus.com/archive/1/527299/30/0
+	TODO: check
 CVE-2013-2744 (importbuddy.php in the BackupBuddy plugin 2.2.25 for WordPress allows ...)
 	NOT-FOR-US: BackupBuddy plugin for WordPress
 CVE-2013-2743 (importbuddy.php in the BackupBuddy plugin 1.3.4, 2.1.4, 2.2.25, ...)
@@ -4613,10 +4616,16 @@
 	NOT-FOR-US: BackupBuddy plugin for WordPress
 CVE-2013-2740
 	RESERVED
-CVE-2013-2739
+CVE-2013-2739 [heap-based buffer overflow]
 	RESERVED
-CVE-2013-2738
+	- minidlna <unfixed>
+	NOTE: http://www.securityfocus.com/archive/1/527299/30/0
+	TODO: check
+CVE-2013-2738 [SQL Injection]
 	RESERVED
+	- minidlna <unfixed>
+	NOTE: http://www.securityfocus.com/archive/1/527299/30/0
+	TODO: check
 CVE-2013-2737 (A JavaScript API in Adobe Reader and Acrobat 9.x before 9.5.5, 10.x ...)
 	NOT-FOR-US: Adobe Reader
 CVE-2013-2736 (Adobe Reader and Acrobat 9.x before 9.5.5, 10.x before 10.1.7, and ...)




More information about the Secure-testing-commits mailing list