[Secure-testing-commits] r35345 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Jul 6 18:33:51 UTC 2015


Author: carnil
Date: 2015-07-06 18:33:51 +0000 (Mon, 06 Jul 2015)
New Revision: 35345

Modified:
   data/CVE/list
Log:
Add temporary items for roundcube

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-07-06 13:27:11 UTC (rev 35344)
+++ data/CVE/list	2015-07-06 18:33:51 UTC (rev 35345)
@@ -1,3 +1,18 @@
+CVE-2015-XXXX [potential info disclosure from temp directory]
+	- roundcube <unfixed>
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/07/06/10
+	NOTE: http://trac.roundcube.net/ticket/1490378
+	TODO: check versions
+CVE-2015-XXXX [security improvement in contact photo handling]
+	- roundcube <unfixed>
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/07/06/10
+	NOTE: http://trac.roundcube.net/ticket/1490379
+	TODO: check versions
+CVE-2015-XXXX [XSS vulnerability in _mbox argument]
+	- roundcube <unfixed>
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/07/06/10
+	NOTE: http://trac.roundcube.net/ticket/1490417
+	TODO: check versions
 CVE-2015-XXXX [TLS: Disable client-initiated renegotiation]
 	- squid <removed>
 	- squid3 <unfixed>




More information about the Secure-testing-commits mailing list