[Secure-testing-commits] r27748 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jul 17 05:25:07 UTC 2014


Author: carnil
Date: 2014-07-17 05:25:07 +0000 (Thu, 17 Jul 2014)
New Revision: 27748

Modified:
   data/CVE/list
Log:
Add drupal issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-07-17 04:55:29 UTC (rev 27747)
+++ data/CVE/list	2014-07-17 05:25:07 UTC (rev 27748)
@@ -1,3 +1,18 @@
+CVE-2014-XXXX [Cross-site scripting - Ajax system]
+	- drupal6 <not-affected> (Only affects Drupal 7 core)
+	- drupal7 <unfixed>
+	NOTE: https://www.drupal.org/SA-CORE-2014-003
+CVE-2014-XXXX [Cross-site scripting - Form API option groups]
+	- drupal6 <removed>
+	- drupal7 <unfixed>
+	NOTE: https://www.drupal.org/SA-CORE-2014-003
+CVE-2014-XXXX [Access bypass]
+	- drupal6 <not-affected> (Only affects Drupal 7 core)
+	NOTE: https://www.drupal.org/SA-CORE-2014-003
+CVE-2014-XXXX [Denial of service with malicious HTTP Host header]
+	- drupal6 <removed>
+	- drupal7 <unfixed>
+	NOTE: https://www.drupal.org/SA-CORE-2014-003
 CVE-2014-4975
 	RESERVED
 CVE-2014-4974




More information about the Secure-testing-commits mailing list