[Secure-testing-commits] r24389 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Nov 21 14:41:38 UTC 2013


Author: jmm
Date: 2013-11-21 14:41:37 +0000 (Thu, 21 Nov 2013)
New Revision: 24389

Modified:
   data/CVE/list
Log:
mantis no-dsa
yui and horde bugnums


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-11-21 13:53:25 UTC (rev 24388)
+++ data/CVE/list	2013-11-21 14:41:37 UTC (rev 24389)
@@ -54,7 +54,7 @@
 CVE-2013-6781
 	RESERVED
 CVE-2013-6780 (Cross-site scripting (XSS) vulnerability in uploader.swf in the ...)
-	- yui <unfixed>
+	- yui <unfixed> (bug #730104)
 	- yui3 <not-affected>
 CVE-2013-6779
 	RESERVED
@@ -978,14 +978,12 @@
 	NOT-FOR-US: VMware Hyperic HQ
 CVE-2013-6365 [CSRF edit.php]
 	RESERVED
-	- php-horde <unfixed>
+	- php-horde <unfixed> (bug #730110)
 	- horde3 <removed>
-	TODO: check
 CVE-2013-6364 [XSS and CSRF search.php]
 	RESERVED
-	- php-horde <unfixed>
+	- php-horde <unfixed> (bug #730110)
 	- turba2 <removed>
-	TODO: check
 CVE-2013-6340 (epan/dissectors/packet-tcp.c in the TCP dissector in Wireshark 1.8.x ...)
 	{DSA-2792-1}
 	- wireshark 1.10.3-1
@@ -5401,7 +5399,9 @@
 	RESERVED
 CVE-2013-4460 [XSS in account_sponsor_page.php project names]
 	RESERVED
-	- mantis <unfixed> (bug #727180)
+	- mantis <unfixed> (low; bug #727180)
+	[squeeze] - mantis <no-dsa> (Minor issue)
+	[wheezy] - mantis <no-dsa> (Minor issue)
 	NOTE: http://www.mantisbt.org/bugs/view.php?id=16513
 CVE-2013-4459 [no longer confines guest profile with AppArmor]
 	RESERVED




More information about the Secure-testing-commits mailing list