[Secure-testing-commits] r22732 - data/CVE

Raphael Geissert atomo64-guest at alioth.debian.org
Tue Jun 25 07:53:09 UTC 2013


Author: atomo64-guest
Date: 2013-06-25 07:53:09 +0000 (Tue, 25 Jun 2013)
New Revision: 22732

Modified:
   data/CVE/list
Log:
new php issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-06-24 21:45:08 UTC (rev 22731)
+++ data/CVE/list	2013-06-25 07:53:09 UTC (rev 22732)
@@ -1,10 +1,14 @@
 CVE-2013-4636 (The mget function in libmagic/softmagic.c in the Fileinfo component in ...)
+	- php5 <unfixed>
+	- file <not-affected> (bug in code modified for PHP)
 	TODO: check
 CVE-2013-4635 (Integer overflow in the SdnToJewish function in jewish.c in the ...)
+	- php5 <unfixed>
 	TODO: check
 CVE-2012-6572 (Cross-site scripting (XSS) vulnerability in the ...)
-	TODO: check
+	NOT-FOR-US: Inf08 theme for Drupal
 CVE-2013-4634 (SQL injection vulnerability in the jQuery autocomplete for ...)
+	- typo3-src <unfixed>
 	TODO: check
 CVE-2013-4633 (Huawei Seco Versatile Security Manager (VSM) before V200R002C00SPC300 ...)
 	NOT-FOR-US: Huawei Seco Versatile Security Manager
@@ -2631,7 +2635,7 @@
 CVE-2013-3393
 	RESERVED
 CVE-2013-3392 (Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco ...)
-	TODO: check
+	NOT-FOR-US: Cisco WebEx Social
 CVE-2013-3391
 	RESERVED
 CVE-2013-3390
@@ -2952,7 +2956,7 @@
 CVE-2013-3251
 	RESERVED
 CVE-2013-3250 (Cross-site request forgery (CSRF) vulnerability in the WP Maintenance ...)
-	TODO: check
+	NOT-FOR-US: WP Maintenance Mode plugin for Wordpress
 CVE-2013-3249
 	RESERVED
 CVE-2013-3248
@@ -3424,7 +3428,7 @@
 CVE-2013-3036
 	RESERVED
 CVE-2013-3035 (The IPv6 implementation in the inet subsystem in IBM AIX 6.1 and 7.1, ...)
-	TODO: check
+	NOT-FOR-US: IBM AIX
 CVE-2013-3034
 	RESERVED
 CVE-2013-3033
@@ -3572,9 +3576,9 @@
 CVE-2013-2962
 	RESERVED
 CVE-2013-2961 (The internal web server in the Basic Services component in IBM Tivoli ...)
-	TODO: check
+	NOT-FOR-US: IBM Tivoli
 CVE-2013-2960 (Buffer overflow in KDSMAIN in the Basic Services component in IBM ...)
-	TODO: check
+	NOT-FOR-US: IBM Tivoli
 CVE-2013-2959 (The Console in IBM InfoSphere Optim Data Growth for Oracle E-Business ...)
 	NOT-FOR-US: IBM
 CVE-2013-2958
@@ -10349,7 +10353,7 @@
 CVE-2013-0549 (Cross-site scripting (XSS) vulnerability in the Web Content Manager - ...)
 	NOT-FOR-US: IBM WebSphere Portal
 CVE-2013-0548 (Multiple cross-site scripting (XSS) vulnerabilities in the Basic ...)
-	TODO: check
+	NOT-FOR-US: IBM Tivoli
 CVE-2013-0547
 	RESERVED
 CVE-2013-0546
@@ -10373,11 +10377,11 @@
 CVE-2013-0537
 	RESERVED
 CVE-2013-0536 (ntmulti.exe in the Multi User Profile Cleanup service in IBM Notes ...)
-	TODO: check
+	NOT-FOR-US: IBM Notes
 CVE-2013-0535 (Multiple cross-site scripting (XSS) vulnerabilities in the Classic ...)
 	NOT-FOR-US: IBM Sametime
 CVE-2013-0534 (The Connect client in IBM Sametime 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, and ...)
-	TODO: check
+	NOT-FOR-US: IBM Sametime
 CVE-2013-0533 (Cross-site scripting (XSS) vulnerability in the Sametime Links server ...)
 	NOT-FOR-US: IBM Sametime
 CVE-2013-0532 (Cross-site request forgery (CSRF) vulnerability in IBM Security ...)
@@ -10387,11 +10391,11 @@
 CVE-2013-0530
 	RESERVED
 CVE-2013-0529 (The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 ...)
-	TODO: check
+	NOT-FOR-US: IBM Sterling Connect:Direct
 CVE-2013-0528
 	RESERVED
 CVE-2013-0527 (The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 ...)
-	TODO: check
+	NOT-FOR-US: IBM Sterling Connect:Direct
 CVE-2013-0526
 	RESERVED
 CVE-2013-0525 (Multiple cross-site scripting (XSS) vulnerabilities in IBM iNotes ...)
@@ -10399,7 +10403,7 @@
 CVE-2013-0524
 	RESERVED
 CVE-2013-0523 (IBM WebSphere Commerce Enterprise 5.6.x through 5.6.1.5, 6.0.x through ...)
-	TODO: check
+	NOT-FOR-US: IBM WebSphere
 CVE-2013-0522
 	RESERVED
 CVE-2013-0521




More information about the Secure-testing-commits mailing list