[Secure-testing-commits] r23569 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Sat Sep 7 04:19:37 UTC 2013


Author: carnil
Date: 2013-09-07 04:19:37 +0000 (Sat, 07 Sep 2013)
New Revision: 23569

Modified:
   data/CVE/list
Log:
There is a ITP/RFP on Open-Xchange, mark accordingly

The ITP/RFP is really old and no activity on the bugreport since 2010,
update anyway all Open-Xchange items from NFU to itp tagged items.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-09-07 04:16:14 UTC (rev 23568)
+++ data/CVE/list	2013-09-07 04:19:37 UTC (rev 23569)
@@ -19,7 +19,7 @@
 CVE-2013-5699
 	RESERVED
 CVE-2013-5698 (Cross-site scripting (XSS) vulnerability in Open-Xchange AppSuite and ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-5697
 	RESERVED
 CVE-2013-5696
@@ -1456,7 +1456,7 @@
 CVE-2013-5036
 	RESERVED
 CVE-2013-5035 (Multiple race conditions in HtmlCleaner before 2.6, as used in ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-5034
 	RESERVED
 CVE-2013-5033
@@ -6007,7 +6007,7 @@
 CVE-2013-3107 (VMware vCenter Server 5.1 before Update 1, when anonymous LDAP binding ...)
 	NOT-FOR-US: vCenter
 CVE-2013-3106 (Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-3105
 	RESERVED
 CVE-2013-3104
@@ -7242,9 +7242,9 @@
 CVE-2013-2584
 	RESERVED
 CVE-2013-2583 (Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-2582 (CRLF injection vulnerability in the redirect servlet in Open-Xchange ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-2581
 	RESERVED
 CVE-2013-2580
@@ -10333,19 +10333,19 @@
 	{DSA-2643-1}
 	- puppet 2.7.18-3
 CVE-2013-1651 (OXUpdater in Open-Xchange Server before 6.20.7 rev14, 6.22.0 before ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-1650 (Open-Xchange Server before 6.20.7 rev14, 6.22.0 before rev13, and ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-1649 (Open-Xchange Server before 6.20.7 rev14, 6.22.0 before rev13, and ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-1648 (The Subscriptions feature in Open-Xchange Server before 6.20.7 rev14, ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-1647 (Multiple CRLF injection vulnerabilities in Open-Xchange Server before ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-1646 (Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-1645 (Directory traversal vulnerability in Open-Xchange Server before 6.20.7 ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2013-1644
 	RESERVED
 CVE-2013-1643 (The SOAP parser in PHP before 5.3.22 and 5.4.x before 5.4.13 allows ...)
@@ -116855,7 +116855,7 @@
 CVE-2006-2739 (PHP remote file inclusion vulnerability in footers.php in Epicdesigns ...)
 	NOT-FOR-US: tinyBB
 CVE-2006-2738 (The open source version of Open-Xchange 0.8.2 and earlier uses a ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2006-2737 (utilities/register.asp in Nukedit 4.9.6 and earlier allows remote ...)
 	NOT-FOR-US: Nukedit
 CVE-2006-2736 (PHP remote file inclusion vulnerability in blend_data/blend_common.php ...)
@@ -123411,7 +123411,7 @@
 	REJECTED
 	NOT-FOR-US: SiteSuite CMS
 CVE-2006-0091 (Cross-site scripting (XSS) vulnerability in webmail in Open-Xchange ...)
-	NOT-FOR-US: Open-Xchange
+	- open-xchange <itp> (bug #269329)
 CVE-2006-0090 (Directory traversal vulnerability in index.php in IDV Directory Viewer ...)
 	NOT-FOR-US: IDV Directory Viewer
 CVE-2006-0089 (Buffer overflow in ESRI ArcPad 7.0.0.156 allows remote attackers to ...)




More information about the Secure-testing-commits mailing list