[Secure-testing-commits] r31270 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Jan 11 14:17:38 UTC 2015


Author: carnil
Date: 2015-01-11 14:17:38 +0000 (Sun, 11 Jan 2015)
New Revision: 31270

Modified:
   data/CVE/list
Log:
Add references for typo3-src issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-11 13:05:48 UTC (rev 31269)
+++ data/CVE/list	2015-01-11 14:17:38 UTC (rev 31270)
@@ -967,8 +967,10 @@
 	- typo3-src <unfixed>
 	[squeeze] - typo3-src <end-of-life> (Unsupported in squeeze-lts)
 CVE-2014-9508 (The frontend rendering component in TYPO3 4.5.x before 4.5.39, 4.6.x ...)
-	- typo3-src <unfixed>
+	- typo3-src <unfixed> (bug #775105)
 	[squeeze] - typo3-src <end-of-life> (Unsupported in squeeze-lts)
+	NOTE: https://review.typo3.org/#/c/35222/
+	NOTE: https://review.typo3.org/gitweb?p=Packages/TYPO3.CMS.git;a=commitdiff;h=63ae7ddd11d284a121f23ce86282e3149bc16f96
 CVE-2014-9505 (Cross-site scripting (XSS) vulnerability in the School Administration ...)
 	NOT-FOR-US: School Administration module for Drupal
 CVE-2014-9504




More information about the Secure-testing-commits mailing list