[Secure-testing-commits] r23810 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Fri Sep 27 17:57:47 UTC 2013


Author: carnil
Date: 2013-09-27 17:57:47 +0000 (Fri, 27 Sep 2013)
New Revision: 23810

Modified:
   data/CVE/list
Log:
Add three CVE's related to open-xchange

(not clear if affected components will actually be part of any package
provided by the ITP, anyway really old ITP/RFP)

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-09-27 17:57:33 UTC (rev 23809)
+++ data/CVE/list	2013-09-27 17:57:47 UTC (rev 23810)
@@ -13,11 +13,11 @@
 CVE-2013-5937 (Cross-site request forgery (CSRF) vulnerability in the Click2Sell ...)
 	NOT-FOR-US: Click2Sell Suite Drupal contributed module
 CVE-2013-5936 (The Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before ...)
-	TODO: check
+	- open-xchange <itp> (bug #269329)
 CVE-2013-5935 (The Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before ...)
-	TODO: check
+	- open-xchange <itp> (bug #269329)
 CVE-2013-5934 (Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before ...)
-	TODO: check
+	- open-xchange <itp> (bug #269329)
 CVE-2013-5933 (Stack-based buffer overflow in the sub_E110 function in init in a ...)
 	TODO: check
 CVE-2013-5932 (Unspecified vulnerability in WebAdmin in Sophos UTM (aka Astaro ...)




More information about the Secure-testing-commits mailing list