[Secure-testing-commits] r44746 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Sep 20 04:57:44 UTC 2016


Author: carnil
Date: 2016-09-20 04:57:44 +0000 (Tue, 20 Sep 2016)
New Revision: 44746

Modified:
   data/CVE/list
Log:
Add source package names for CVE-2016-7419

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-09-19 21:40:36 UTC (rev 44745)
+++ data/CVE/list	2016-09-20 04:57:44 UTC (rev 44746)
@@ -2380,6 +2380,11 @@
 	NOTE: -DNDEBUG and Static Initialization
 	NOTE: Documentation added in https://github.com/weidai11/cryptopp/commit/553049ba297d89d9e8fbf2204acb40a8a53f5cd6
 CVE-2016-7419 (Cross-site scripting (XSS) vulnerability in share.js in the gallery ...)
+	- nextcloud <itp> (bug #835086)
+	- owncloud <removed>
+	NOTE: https://owncloud.org/security/advisory/?id=oc-sa-2016-011
+	NOTE: https://github.com/owncloud/gallery/commit/6933d27afe518967bd1b60e6a7eacd88288929fc
+	NOTE: https://hackerone.com/reports/145355
 	TODO: check
 CVE-2016-7418 (The php_wddx_push_element function in ext/wddx/wddx.c in PHP before ...)
 	- php7.0 7.0.11-1




More information about the Secure-testing-commits mailing list