[Secure-testing-commits] r24410 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Nov 22 20:56:09 UTC 2013


Author: carnil
Date: 2013-11-22 20:56:09 +0000 (Fri, 22 Nov 2013)
New Revision: 24410

Modified:
   data/CVE/list
Log:
Add fixed versions for unstable's drupal7

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-11-22 20:53:23 UTC (rev 24409)
+++ data/CVE/list	2013-11-22 20:56:09 UTC (rev 24410)
@@ -891,22 +891,22 @@
 	RESERVED
 CVE-2013-6389 [Open redirect]
 	RESERVED
-	- drupal7 <unfixed>
+	- drupal7 7.24-1
 CVE-2013-6388 [Cross-site scripting]
 	RESERVED
-	- drupal7 <unfixed>
+	- drupal7 7.24-1
 CVE-2013-6387 [Cross-site scripting]
 	RESERVED
-	- drupal7 <unfixed>
+	- drupal7 7.24-1
 CVE-2013-6386 [weakness in pseudorandom number generation using mt_rand()]
 	RESERVED
 	- drupal6 <removed>
-	- drupal7 <unfixed>
+	- drupal7 7.24-1
 	NOTE: https://drupal.org/SA-CORE-2013-003
 CVE-2013-6385 [Multiple vulnerabilities due to optimistic cross-site request forgery protection]
 	RESERVED
 	- drupal6 <removed>
-	- drupal7 <unfixed>
+	- drupal7 7.24-1
 	NOTE: https://drupal.org/SA-CORE-2013-003
 CVE-2013-6384 [Ceilometer log contains DB password in plain text]
 	RESERVED




More information about the Secure-testing-commits mailing list