[Secure-testing-commits] r31289 - data/CVE

Paul Wise pabs at moszumanska.debian.org
Tue Jan 13 09:57:47 UTC 2015


Author: pabs
Date: 2015-01-13 09:57:46 +0000 (Tue, 13 Jan 2015)
New Revision: 31289

Modified:
   data/CVE/list
Log:
update some twiki items

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-12 21:07:13 UTC (rev 31288)
+++ data/CVE/list	2015-01-13 09:57:46 UTC (rev 31289)
@@ -1852,6 +1852,7 @@
 	NOT-FOR-US: WordPress plugin twitterDash
 CVE-2014-9367 (Incomplete blacklist vulnerability in the urlEncode function in ...)
 	NOT-FOR-US: Twiki
+	NOTE: http://twiki.org/cgi-bin/view/Codev/SecurityAlert-CVE-2014-9367
 CVE-2014-9366
 	RESERVED
 CVE-2014-9493 (The V2 API in OpenStack Image Registry and Delivery Service (Glance) ...)
@@ -2047,6 +2048,7 @@
 	RESERVED
 CVE-2014-9325 (Multiple cross-site scripting (XSS) vulnerabilities in TWiki 6.0.1 ...)
 	NOT-FOR-US: Twiki
+	NOTE: http://twiki.org/cgi-bin/view/Codev/SecurityAlert-CVE-2014-9325
 CVE-2014-9324 (The GenericInterface in OTRS Help Desk 3.2.x before 3.2.17, 3.3.x ...)
 	{DSA-3124-1}
 	- otrs2 3.3.9-3
@@ -7925,10 +7927,12 @@
 CVE-2014-7238
 	RESERVED
 CVE-2014-7237 (lib/TWiki/Sandbox.pm in TWiki 6.0.0 and earlier, when running on ...)
-	NOT-FOR-US: Twiki
-CVE-2014-7236
+	NOT-FOR-US: TWiki
+	NOTE: http://twiki.org/cgi-bin/view/Codev/SecurityAlert-CVE-2014-7237
+CVE-2014-7236 (Remote Perl code execution with query string to debug TWiki plugins)
 	RESERVED
 	NOT-FOR-US: TWiki
+	NOTE: http://twiki.org/cgi-bin/view/Codev/SecurityAlert-CVE-2014-7236
 CVE-2014-7235 (htdocs_ari/includes/login.php in the ARI Framework module/Asterisk ...)
 	- freepbx <itp> (bug #464926)
 CVE-2014-7234




More information about the Secure-testing-commits mailing list