[Secure-testing-commits] r38820 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Jan 10 14:16:39 UTC 2016


Author: carnil
Date: 2016-01-10 14:16:39 +0000 (Sun, 10 Jan 2016)
New Revision: 38820

Modified:
   data/CVE/list
Log:
Two CVEs fixed in unstable for cacti

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-01-10 14:15:28 UTC (rev 38819)
+++ data/CVE/list	2016-01-10 14:16:39 UTC (rev 38820)
@@ -659,7 +659,7 @@
 	TODO: check
 CVE-2015-8604 [SQL Injection in graphs_new.php]
 	RESERVED
-	- cacti <unfixed>
+	- cacti 0.8.8f+ds1-4
 	NOTE: http://bugs.cacti.net/view.php?id=2652
 	NOTE: http://www.openwall.com/lists/oss-security/2016/01/04/8
 CVE-2016-1282
@@ -4487,7 +4487,7 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2015/12/02/6
 CVE-2015-8377 (SQL injection vulnerability in the host_new_graphs_save function in ...)
 	{DLA-374-1}
-	- cacti <unfixed>
+	- cacti 0.8.8f+ds1-4
 	NOTE: http://bugs.cacti.net/view.php?id=2655
 	NOTE: http://seclists.org/fulldisclosure/2015/Dec/att-57/cacti_sqli%281%29.txt
 CVE-2015-XXXX [Avoid unbounded SFTP extended attribute key/values]




More information about the Secure-testing-commits mailing list