[Secure-testing-commits] r30455 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sun Nov 30 05:52:35 UTC 2014
Author: carnil
Date: 2014-11-30 05:52:35 +0000 (Sun, 30 Nov 2014)
New Revision: 30455
Modified:
data/CVE/list
Log:
Mark mantis as removed from unstable
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-11-30 05:52:17 UTC (rev 30454)
+++ data/CVE/list 2014-11-30 05:52:35 UTC (rev 30455)
@@ -22,7 +22,7 @@
NOTE: https://bitbucket.org/xi/libyaml/commits/2b9156756423e967cfd09a61d125d883fca6f4f2
NOTE: for pyyaml: might be need to be removed here (no-CVE assigned) or separate CVE
CVE-2014-9117 [CAPTCHA bypass]
- - mantis <unfixed>
+ - mantis <removed>
[squeeze] - mantis <end-of-life> (Unsupported in squeeze-lts)
NOTE: http://github.com/mantisbt/mantisbt/commit/7bb78e4581ff1092c811ea96582fe602624cdcdd
NOTE: https://www.mantisbt.org/bugs/view.php?id=17811
@@ -39,7 +39,7 @@
NOTE: http://lcamtuf.coredump.cx/afl/vulns/lesspipe-cpio-bad-write.cpio
TODO: check
CVE-2014-9089 [SQL-injection in /view_all_set.php and/or core/filter_api.php]
- - mantis <unfixed>
+ - mantis <removed>
[squeeze] - mantis <end-of-life> (Unsupported in squeeze-lts)
NOTE: https://www.mantisbt.org/bugs/view.php?id=17841
NOTE: http://github.com/mantisbt/mantisbt/commit/b0021673
@@ -797,7 +797,7 @@
NOTE: http://thread.gmane.org/gmane.linux.man/7385/
CVE-2014-8986 [XSS]
RESERVED
- - mantis <unfixed>
+ - mantis <removed>
[squeeze] - mantis <end-of-life> (Unsupported in squeeze-lts)
NOTE: https://github.com/mantisbt/mantisbt/commit/cabacdc291c251bfde0dc2a2c945c02cef41bf40
CVE-2014-8985
@@ -1275,7 +1275,7 @@
NOTE: http://seclists.org/fulldisclosure/2014/Nov/45
CVE-2014-8988 [information disclosure in MantisBT attachments]
RESERVED
- - mantis <unfixed>
+ - mantis <removed>
[squeeze] - mantis <end-of-life> (Unsupported in squeeze-lts)
NOTE: http://github.com/mantisbt/mantisbt/commit/5f0b150b
NOTE: http://www.mantisbt.org/bugs/view.php?id=17742
@@ -1711,7 +1711,7 @@
NOTE: https://bugs.launchpad.net/ubuntu/+source/dpkg/+bug/1389135
NOTE: Regression introduced with https://anonscm.debian.org/cgit/dpkg/dpkg.git/commit/?id=0b8652b226a7601dfd71471797d15168a7337242 (1.16.2)
CVE-2014-8598 (The XML Import/Export plugin in MantisBT 1.2.x does not restrict ...)
- - mantis <unfixed>
+ - mantis <removed>
[squeeze] - mantis <end-of-life> (Unsupported in squeeze-lts)
NOTE: https://github.com/mantisbt/mantisbt/commit/80a15487
NOTE: http://www.mantisbt.org/bugs/view.php?id=17780
@@ -5208,7 +5208,7 @@
CVE-2014-7147
RESERVED
CVE-2014-7146 (The XmlImportExport plugin in MantisBT 1.2.17 and earlier allows ...)
- - mantis <unfixed>
+ - mantis <removed>
[squeeze] - mantis <end-of-life> (Unsupported in squeeze-lts)
NOTE: http://www.mantisbt.org/bugs/view.php?id=17725
NOTE: https://github.com/mantisbt/mantisbt/commit/bed19db9 (1.2.x branch)
More information about the Secure-testing-commits
mailing list