[Secure-testing-commits] r28302 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Aug 16 07:53:16 UTC 2014


Author: carnil
Date: 2014-08-16 07:53:16 +0000 (Sat, 16 Aug 2014)
New Revision: 28302

Modified:
   data/CVE/list
Log:
Two CVEs assigned for cacti

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-16 06:46:55 UTC (rev 28301)
+++ data/CVE/list	2014-08-16 07:53:16 UTC (rev 28302)
@@ -1,10 +1,12 @@
 CVE-2012-XXXX [passes (encrypted) passwords as commandline arguments]
 	- accountsservice <unfixed> (bug #757912)
 	NOTE: https://bugs.freedesktop.org/show_bug.cgi?id=55000
-CVE-2014-XXXX [cacti remote code execution]
+CVE-2014-5262 [SQL injection]
 	- cacti <unfixed>
 	NOTE: http://svn.cacti.net/viewvc?view=rev&revision=7454
-	NOTE: CVE id requested via oss-sec, maintainer in the loop
+CVE-2014-5261 [cacti remote code execution]
+	- cacti <unfixed>
+	NOTE: http://svn.cacti.net/viewvc?view=rev&revision=7454
 CVE-2014-XXXX [unspecific error when handling MyISAM temporary files can be exploited to execute arbitrary code]
 	- mariadb-5.5 5.5.39-1
 	- mysql-5.5 <undetermined>




More information about the Secure-testing-commits mailing list