[Secure-testing-commits] r22732 - data/CVE
Raphael Geissert
atomo64-guest at alioth.debian.org
Tue Jun 25 07:53:09 UTC 2013
Author: atomo64-guest
Date: 2013-06-25 07:53:09 +0000 (Tue, 25 Jun 2013)
New Revision: 22732
Modified:
data/CVE/list
Log:
new php issues
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2013-06-24 21:45:08 UTC (rev 22731)
+++ data/CVE/list 2013-06-25 07:53:09 UTC (rev 22732)
@@ -1,10 +1,14 @@
CVE-2013-4636 (The mget function in libmagic/softmagic.c in the Fileinfo component in ...)
+ - php5 <unfixed>
+ - file <not-affected> (bug in code modified for PHP)
TODO: check
CVE-2013-4635 (Integer overflow in the SdnToJewish function in jewish.c in the ...)
+ - php5 <unfixed>
TODO: check
CVE-2012-6572 (Cross-site scripting (XSS) vulnerability in the ...)
- TODO: check
+ NOT-FOR-US: Inf08 theme for Drupal
CVE-2013-4634 (SQL injection vulnerability in the jQuery autocomplete for ...)
+ - typo3-src <unfixed>
TODO: check
CVE-2013-4633 (Huawei Seco Versatile Security Manager (VSM) before V200R002C00SPC300 ...)
NOT-FOR-US: Huawei Seco Versatile Security Manager
@@ -2631,7 +2635,7 @@
CVE-2013-3393
RESERVED
CVE-2013-3392 (Multiple cross-site request forgery (CSRF) vulnerabilities in Cisco ...)
- TODO: check
+ NOT-FOR-US: Cisco WebEx Social
CVE-2013-3391
RESERVED
CVE-2013-3390
@@ -2952,7 +2956,7 @@
CVE-2013-3251
RESERVED
CVE-2013-3250 (Cross-site request forgery (CSRF) vulnerability in the WP Maintenance ...)
- TODO: check
+ NOT-FOR-US: WP Maintenance Mode plugin for Wordpress
CVE-2013-3249
RESERVED
CVE-2013-3248
@@ -3424,7 +3428,7 @@
CVE-2013-3036
RESERVED
CVE-2013-3035 (The IPv6 implementation in the inet subsystem in IBM AIX 6.1 and 7.1, ...)
- TODO: check
+ NOT-FOR-US: IBM AIX
CVE-2013-3034
RESERVED
CVE-2013-3033
@@ -3572,9 +3576,9 @@
CVE-2013-2962
RESERVED
CVE-2013-2961 (The internal web server in the Basic Services component in IBM Tivoli ...)
- TODO: check
+ NOT-FOR-US: IBM Tivoli
CVE-2013-2960 (Buffer overflow in KDSMAIN in the Basic Services component in IBM ...)
- TODO: check
+ NOT-FOR-US: IBM Tivoli
CVE-2013-2959 (The Console in IBM InfoSphere Optim Data Growth for Oracle E-Business ...)
NOT-FOR-US: IBM
CVE-2013-2958
@@ -10349,7 +10353,7 @@
CVE-2013-0549 (Cross-site scripting (XSS) vulnerability in the Web Content Manager - ...)
NOT-FOR-US: IBM WebSphere Portal
CVE-2013-0548 (Multiple cross-site scripting (XSS) vulnerabilities in the Basic ...)
- TODO: check
+ NOT-FOR-US: IBM Tivoli
CVE-2013-0547
RESERVED
CVE-2013-0546
@@ -10373,11 +10377,11 @@
CVE-2013-0537
RESERVED
CVE-2013-0536 (ntmulti.exe in the Multi User Profile Cleanup service in IBM Notes ...)
- TODO: check
+ NOT-FOR-US: IBM Notes
CVE-2013-0535 (Multiple cross-site scripting (XSS) vulnerabilities in the Classic ...)
NOT-FOR-US: IBM Sametime
CVE-2013-0534 (The Connect client in IBM Sametime 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, and ...)
- TODO: check
+ NOT-FOR-US: IBM Sametime
CVE-2013-0533 (Cross-site scripting (XSS) vulnerability in the Sametime Links server ...)
NOT-FOR-US: IBM Sametime
CVE-2013-0532 (Cross-site request forgery (CSRF) vulnerability in IBM Security ...)
@@ -10387,11 +10391,11 @@
CVE-2013-0530
RESERVED
CVE-2013-0529 (The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 ...)
- TODO: check
+ NOT-FOR-US: IBM Sterling Connect:Direct
CVE-2013-0528
RESERVED
CVE-2013-0527 (The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 ...)
- TODO: check
+ NOT-FOR-US: IBM Sterling Connect:Direct
CVE-2013-0526
RESERVED
CVE-2013-0525 (Multiple cross-site scripting (XSS) vulnerabilities in IBM iNotes ...)
@@ -10399,7 +10403,7 @@
CVE-2013-0524
RESERVED
CVE-2013-0523 (IBM WebSphere Commerce Enterprise 5.6.x through 5.6.1.5, 6.0.x through ...)
- TODO: check
+ NOT-FOR-US: IBM WebSphere
CVE-2013-0522
RESERVED
CVE-2013-0521
More information about the Secure-testing-commits
mailing list