[Secure-testing-commits] r33825 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Apr 25 09:16:51 UTC 2015


Author: carnil
Date: 2015-04-25 09:16:51 +0000 (Sat, 25 Apr 2015)
New Revision: 33825

Modified:
   data/CVE/list
Log:
Process a couple of NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-25 08:41:09 UTC (rev 33824)
+++ data/CVE/list	2015-04-25 09:16:51 UTC (rev 33825)
@@ -13,7 +13,7 @@
 	NOTE: http://cgit.freedesktop.org/xorg/xserver/commit/?id=dc777c346d5d452a53b13b917c45f6a1bad2f20b
 	NOTE: https://bugzilla.novell.com/show_bug.cgi?id=928520 (not public yet)
 CVE-2015-3404 (The Certify module before 6.x-2.3 for Drupal does not properly perform ...)
-	TODO: check
+	NOT-FOR-US: Certify module for Drupal
 CVE-2015-3403
 	RESERVED
 CVE-2015-3402
@@ -67,47 +67,47 @@
 CVE-2015-3377
 	RESERVED
 CVE-2015-3376 (Cross-site scripting (XSS) vulnerability in the Quizzler module before ...)
-	TODO: check
+	NOT-FOR-US: Quizzler module for Drupal
 CVE-2015-3375 (Cross-site request forgery (CSRF) vulnerability in the Shibboleth ...)
-	TODO: check
+	NOT-FOR-US: Shibboleth Authentication module for Drupal
 CVE-2015-3374 (Multiple cross-site request forgery (CSRF) vulnerabilities in the ...)
-	TODO: check
+	NOT-FOR-US: Corner module fro Drupal
 CVE-2015-3373 (The Amazon AWS module before 7.x-1.3 for Drupal uses the base URL and ...)
-	TODO: check
+	NOT-FOR-US: Amazon AWS module for Drupal
 CVE-2015-3372 (Cross-site scripting (XSS) vulnerability in the Node Invite module ...)
-	TODO: check
+	NOT-FOR-US: Node Invite module for Drupal
 CVE-2015-3371 (Open redirect vulnerability in the Node Invite module before 6.x-2.5 ...)
-	TODO: check
+	NOT-FOR-US: Node Invite module for Drupal
 CVE-2015-3370 (Cross-site request forgery (CSRF) vulnerability in the Node Invite ...)
-	TODO: check
+	NOT-FOR-US: Node Invite module for Drupal
 CVE-2015-3369 (Cross-site scripting (XSS) vulnerability in the Taxonews module before ...)
-	TODO: check
+	NOT-FOR-US: Taxonews module for Drupal
 CVE-2015-3368 (Cross-site scripting (XSS) vulnerability in the administration user ...)
-	TODO: check
+	NOT-FOR-US: Classified Ads module for Drupal
 CVE-2015-3367 (Multiple cross-site request forgery (CSRF) vulnerabilities in the ...)
-	TODO: check
+	NOT-FOR-US: Ptterns module for Drupal
 CVE-2015-3366 (Cross-site request forgery (CSRF) vulnerability in the Alfresco module ...)
-	TODO: check
+	NOT-FOR-US: Alfresco module for Drupal
 CVE-2015-3365 (Cross-site scripting (XSS) vulnerability in the nodeauthor module for ...)
-	TODO: check
+	NOT-FOR-US: nodeauthor module for Drupal
 CVE-2015-3364 (Cross-site scripting (XSS) vulnerability in the Content Analysis ...)
-	TODO: check
+	NOT-FOR-US: Content Analysis module for Drupal
 CVE-2015-3363 (Cross-site request forgery (CSRF) vulnerability in the Contact Form ...)
-	TODO: check
+	NOT-FOR-US: Contact Forms Fields module for Drupal
 CVE-2015-3362 (Cross-site scripting (XSS) vulnerability in the Video module before ...)
-	TODO: check
+	NOT-FOR-US: Video module for Drupal
 CVE-2015-3361 (Cross-site scripting (XSS) vulnerability in the Linkit module before ...)
-	TODO: check
+	NOT-FOR-US: Linkit module for Drupal
 CVE-2015-3360 (Cross-site scripting (XSS) vulnerability in the Term Merge module ...)
-	TODO: check
+	NOT-FOR-US: Term Merge module for Drupal
 CVE-2015-3359 (Multiple cross-site scripting (XSS) vulnerabilities in the Room ...)
-	TODO: check
+	NOT-FOR-US: Room Reservations module for Drupal
 CVE-2015-3358 (Multiple open redirect vulnerabilities in the Tadaa! module before ...)
-	TODO: check
+	NOT-FOR-US: Tadaa! module for Drupal
 CVE-2015-3357 (Cross-site scripting (XSS) vulnerability in the Wishlist module before ...)
-	TODO: check
+	NOT-FOR-US: Wishlist module for Drupal
 CVE-2015-3356 (Multiple cross-site request forgery (CSRF) vulnerabilities in the ...)
-	TODO: check
+	NOT-FOR-US: Tadaa! module for Drupal
 CVE-2015-3355 (Multiple cross-site request forgery (CSRF) vulnerabilities in the ...)
 	TODO: check
 CVE-2015-3354 (Cross-site request forgery (CSRF) vulnerability in the Wishlist module ...)




More information about the Secure-testing-commits mailing list