[Secure-testing-commits] r35049 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jun 20 06:01:13 UTC 2015


Author: carnil
Date: 2015-06-20 06:01:13 +0000 (Sat, 20 Jun 2015)
New Revision: 35049

Modified:
   data/CVE/list
Log:
Update one cacti issue, CVE-2015-4454

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-06-20 05:10:41 UTC (rev 35048)
+++ data/CVE/list	2015-06-20 06:01:13 UTC (rev 35049)
@@ -493,10 +493,6 @@
 	- cacti <unfixed>
 	NOTE: http://svn.cacti.net/viewvc?view=rev&revision=7718
 	NOTE: Fixed upstream in 0.8.8d
-CVE-2015-XXXX [SQL injection in graph templates]
-	- cacti <unfixed>
-	NOTE: http://svn.cacti.net/viewvc?view=rev&revision=7720
-	NOTE: Fixed upstream in 0.8.8d
 CVE-2015-4457
 	RESERVED
 CVE-2015-4456
@@ -505,7 +501,10 @@
 	RESERVED
 	NOT-FOR-US: WordPress plugin aviary-image-editor-add-on-for-gravity-forms
 CVE-2015-4454 (SQL injection vulnerability in the get_hash_graph_template function in ...)
-	TODO: check
+	- cacti <unfixed>
+	NOTE: http://svn.cacti.net/viewvc?view=rev&revision=7720
+	NOTE: http://bugs.cacti.net/view.php?id=2572
+	NOTE: Fixed upstream in 0.8.8d
 CVE-2015-4453
 	RESERVED
 CVE-2015-4452




More information about the Secure-testing-commits mailing list