[Secure-testing-commits] r28332 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Aug 18 15:20:48 UTC 2014


Author: carnil
Date: 2014-08-18 15:20:48 +0000 (Mon, 18 Aug 2014)
New Revision: 28332

Modified:
   data/CVE/list
Log:
Update entry for CVE-2014-5242/mediawiki

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-08-18 12:49:38 UTC (rev 28331)
+++ data/CVE/list	2014-08-18 15:20:48 UTC (rev 28332)
@@ -101,9 +101,9 @@
 	[squeeze] - mediawiki <end-of-life>
 	NOTE: https://bugzilla.wikimedia.org/show_bug.cgi?id=65778
 CVE-2014-5242 [XSS]
-	- mediawiki <unfixed> (bug #758510)
-	[squeeze] - mediawiki <end-of-life>
+	- mediawiki <not-affected> (Vulnerable code not present)
 	NOTE: https://bugzilla.wikimedia.org/show_bug.cgi?id=66608
+	NOTE: Introduced in 1.22wmf14, https://bugzilla.wikimedia.org/show_bug.cgi?id=66608#c18
 CVE-2014-5241 [Prepend jsonp callback with comment]
 	- mediawiki <unfixed> (bug #758510)
 	[squeeze] - mediawiki <end-of-life>




More information about the Secure-testing-commits mailing list