[Secure-testing-commits] r44098 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Aug 22 19:30:06 UTC 2016


Author: carnil
Date: 2016-08-22 19:30:06 +0000 (Mon, 22 Aug 2016)
New Revision: 44098

Modified:
   data/CVE/list
Log:
Add CVE-2016-6893

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-08-22 19:16:12 UTC (rev 44097)
+++ data/CVE/list	2016-08-22 19:30:06 UTC (rev 44098)
@@ -14,6 +14,12 @@
 	NOTE: http://seclists.org/oss-sec/2016/q3/347
 	NOTE: https://sumofpwn.nl/advisory/2016/path_traversal_vulnerability_in_wordpress_core_ajax_handlers.html
 	TODO: check
+CVE-2016-6893 [CSRF protection needs to be extended to the user options page]
+	- mailman <unfixed>
+	NOTE: https://mail.python.org/pipermail/mailman-announce/2016-August/000225.html
+	NOTE: https://bugs.launchpad.net/mailman/+bug/1614841
+	NOTE: No details until release on Saturday, Aug 27 2016
+	TODO: check
 CVE-2016-6880
 	RESERVED
 CVE-2016-6879




More information about the Secure-testing-commits mailing list