[Secure-testing-commits] r22486 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Tue Jun 4 21:06:19 UTC 2013


Author: carnil
Date: 2013-06-04 21:06:19 +0000 (Tue, 04 Jun 2013)
New Revision: 22486

Modified:
   data/CVE/list
Log:
add CVE for gallery issue (still to be checked)

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-06-04 21:02:27 UTC (rev 22485)
+++ data/CVE/list	2013-06-04 21:06:19 UTC (rev 22486)
@@ -2,10 +2,6 @@
 	- srtp <unfixed>
 	NOTE: CVE request http://www.openwall.com/lists/oss-security/2013/06/04/3
 	TODO: check and report bug
-CVE-2013-XXXX [gallery: improper stripping of URL fragments might lead to replay attacks]
-	- gallery <unfixed>
-	NOTE: http://www.openwall.com/lists/oss-security/2013/06/04/1
-	NOTE: check. might only affect 3.x
 CVE-2013-3737
 	RESERVED
 CVE-2013-3736
@@ -3638,8 +3634,10 @@
 	RESERVED
 CVE-2013-2139
 	RESERVED
-CVE-2013-2138
+CVE-2013-2138 [gallery: improper stripping of URL fragments might lead to replay attacks]
 	RESERVED
+	- gallery <unfixed>
+	TODO: check. might only affect 3.x
 CVE-2013-2137
 	RESERVED
 CVE-2013-2136




More information about the Secure-testing-commits mailing list