[Secure-testing-commits] r23715 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Wed Sep 18 20:17:22 UTC 2013


Author: carnil
Date: 2013-09-18 20:17:21 +0000 (Wed, 18 Sep 2013)
New Revision: 23715

Modified:
   data/CVE/list
Log:
Add fixed version for CVE-2013-4701/php-openid

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-09-18 14:57:34 UTC (rev 23714)
+++ data/CVE/list	2013-09-18 20:17:21 UTC (rev 23715)
@@ -2367,7 +2367,7 @@
 CVE-2013-4702 (Multiple directory traversal vulnerabilities in the doApiAction ...)
 	NOT-FOR-US: EC-CUBE
 CVE-2013-4701 (Auth/Yadis/XML.php in PHP OpenID Library 2.2.2 and earlier allows ...)
-	- php-openid <unfixed> (bug #721221)
+	- php-openid 2.2.2-1.2 (bug #721221)
 	TODO: check, potentially also simplesamlphp, typo3-src and wordpress-openid (including a Auth/Yadis/XML.php in source)
 CVE-2013-4700 (The Yahoo! Japan Shopping application 1.4 and earlier for Android does ...)
 	NOT-FOR-US: Yahoo shopping app




More information about the Secure-testing-commits mailing list