[Secure-testing-commits] r30429 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sat Nov 29 09:33:07 UTC 2014
Author: carnil
Date: 2014-11-29 09:33:07 +0000 (Sat, 29 Nov 2014)
New Revision: 30429
Modified:
data/CVE/list
Log:
Add upstream patch reference for CVE-2014-9050/wordpress
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-11-29 09:31:40 UTC (rev 30428)
+++ data/CVE/list 2014-11-29 09:33:07 UTC (rev 30429)
@@ -74,6 +74,7 @@
NOTE: Upstream commit: https://github.com/vrtadmin/clamav-devel/commit/fc3794a54d2affe5770c1f876484a871c783e91e
CVE-2014-9039 [Previously an email address change would not invalidate a previous password reset email]
- wordpress 4.0.1+dfsg-1 (bug #770425)
+ NOTE: Upstream patch: http://core.trac.wordpress.org/changeset/30431
NOTE: https://wordpress.org/news/2014/11/wordpress-4-0-1/
CVE-2014-9038 [SSRF: Safe HTTP requests did not sufficiently block the loopback IP address space]
- wordpress 4.0.1+dfsg-1 (bug #770425)
More information about the Secure-testing-commits
mailing list