[Secure-testing-commits] r23806 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Fri Sep 27 13:08:20 UTC 2013


Author: carnil
Date: 2013-09-27 13:08:19 +0000 (Fri, 27 Sep 2013)
New Revision: 23806

Modified:
   data/CVE/list
Log:
Add two CVEs for graphite-web which were clarified by mitre

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-09-27 13:03:27 UTC (rev 23805)
+++ data/CVE/list	2013-09-27 13:08:19 UTC (rev 23806)
@@ -1,3 +1,7 @@
+CVE-2013-5943 (Multiple cross-site scripting (XSS) vulnerabilities in Graphite before ...)
+	- graphite-web 0.9.12+debian-1
+CVE-2013-5942 (Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, ...)
+	- graphite-web 0.9.12+debian-1
 CVE-2013-5941
 	RESERVED
 CVE-2013-5940




More information about the Secure-testing-commits mailing list