[Secure-testing-commits] r23715 - data/CVE
Salvatore Bonaccorso
carnil at alioth.debian.org
Wed Sep 18 20:17:22 UTC 2013
Author: carnil
Date: 2013-09-18 20:17:21 +0000 (Wed, 18 Sep 2013)
New Revision: 23715
Modified:
data/CVE/list
Log:
Add fixed version for CVE-2013-4701/php-openid
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2013-09-18 14:57:34 UTC (rev 23714)
+++ data/CVE/list 2013-09-18 20:17:21 UTC (rev 23715)
@@ -2367,7 +2367,7 @@
CVE-2013-4702 (Multiple directory traversal vulnerabilities in the doApiAction ...)
NOT-FOR-US: EC-CUBE
CVE-2013-4701 (Auth/Yadis/XML.php in PHP OpenID Library 2.2.2 and earlier allows ...)
- - php-openid <unfixed> (bug #721221)
+ - php-openid 2.2.2-1.2 (bug #721221)
TODO: check, potentially also simplesamlphp, typo3-src and wordpress-openid (including a Auth/Yadis/XML.php in source)
CVE-2013-4700 (The Yahoo! Japan Shopping application 1.4 and earlier for Android does ...)
NOT-FOR-US: Yahoo shopping app
More information about the Secure-testing-commits
mailing list