[Secure-testing-commits] r30069 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Nov 15 06:00:25 UTC 2014


Author: carnil
Date: 2014-11-15 06:00:25 +0000 (Sat, 15 Nov 2014)
New Revision: 30069

Modified:
   data/CVE/list
Log:
Add temporary item for mantis issue, not-affected

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-11-15 05:53:07 UTC (rev 30068)
+++ data/CVE/list	2014-11-15 06:00:25 UTC (rev 30069)
@@ -1,3 +1,8 @@
+CVE-2014-XXXX [Cross-Site Scripting in adm_config_report.php]
+	- mantis <not-affected> (Vulnerable code introduced later)
+	NOTE: Affected upstream versions >= 1.2.13, <= 1.2.17
+	NOTE: https://github.com/mantisbt/mantisbt/commit/ee8100d6
+	NOTE: http://www.mantisbt.org/bugs/view.php?id=17870
 CVE-2014-XXXX [archives are created with read permissions for everyone]
 	- sosreport 3.2-2 (bug #769521)
 	NOTE: https://github.com/sosreport/sos/issues/425




More information about the Secure-testing-commits mailing list