[Secure-testing-commits] r39498 - data/CVE

Antoine Beaupré anarcat at moszumanska.debian.org
Fri Feb 5 21:26:02 UTC 2016


Author: anarcat
Date: 2016-02-05 21:26:01 +0000 (Fri, 05 Feb 2016)
New Revision: 39498

Modified:
   data/CVE/list
Log:
Summary: CVE-2015-8794 also not present in wheezy and squeeze


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-02-05 21:20:36 UTC (rev 39497)
+++ data/CVE/list	2016-02-05 21:26:01 UTC (rev 39498)
@@ -335,8 +335,11 @@
 	RESERVED
 CVE-2015-8794 (Absolute path traversal vulnerability in ...)
 	- roundcube 1.1.2+dfsg.1-1
+	[wheezy] - roundcube <not-affected> (Vulnerable code not present)
+	[squeeze] - roundcube <not-affected> (Vulnerable code not present)
 	NOTE: http://www.scip.ch/en/?vuldb.80732
 	NOTE: https://roundcube.net/news/2015/06/05/updates-1.1.2-and-1.0.6-released/
+	NOTE: http://trac.roundcube.net/ticket/1490379
 CVE-2015-8793 (Cross-site scripting (XSS) vulnerability in program/include/rcmail.php ...)
 	- roundcube 1.1.2+dfsg.1-1
 	[wheezy] - roundcube <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list