[Secure-testing-commits] r23902 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Mon Oct 7 08:45:06 UTC 2013


Author: jmm
Date: 2013-10-07 08:45:05 +0000 (Mon, 07 Oct 2013)
New Revision: 23902

Modified:
   data/CVE/list
Log:
one older mysql issue affects 5.1.x
glpi unimportant


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-07 05:17:47 UTC (rev 23901)
+++ data/CVE/list	2013-10-07 08:45:05 UTC (rev 23902)
@@ -615,7 +615,8 @@
 CVE-2013-5697 (SQL injection vulnerability in mod_accounting.c in the mod_accounting ...)
 	- libapache-mod-acct <removed>
 CVE-2013-5696 (inc/central.class.php in GLPI before 0.84.2 does not attempt to make ...)
-	- glpi 0.84.2-1 (bug #723837)
+	- glpi 0.84.2-1 (unimportant; bug #723837)
+	NOTE: Only supported behind an authenticated HTTP zone
 	NOTE: CVE split pending
 CVE-2013-5695
 	RESERVED
@@ -17731,7 +17732,7 @@
 	NOTE: http://seclists.org/fulldisclosure/2012/Dec/9
 CVE-2012-5614 (Oracle MySQL 5.1.67 and earlier and 5.5.29 and earlier, and MariaDB ...)
 	- mysql-5.5 <not-affected> (The affected versions were only in experimental)
-	- mysql-5.1 <not-affected> (Only affected 5.5.x)
+	- mysql-5.1 <removed>
 	NOTE: https://mariadb.atlassian.net/browse/MDEV-3910
 	NOTE: http://seclists.org/fulldisclosure/2012/Dec/7
 	NOTE: http://www.openwall.com/lists/oss-security/2013/02/28/10




More information about the Secure-testing-commits mailing list