[Secure-testing-commits] r52592 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Thu Jun 15 18:56:07 UTC 2017
Author: carnil
Date: 2017-06-15 18:56:07 +0000 (Thu, 15 Jun 2017)
New Revision: 52592
Modified:
data/CVE/list
Log:
Record unstable version for request-tracker4
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-06-15 18:54:55 UTC (rev 52591)
+++ data/CVE/list 2017-06-15 18:56:07 UTC (rev 52592)
@@ -10799,10 +10799,10 @@
NOT-FOR-US: Moodle plugin
CVE-2017-5944 [Remote code execution in dashboard interface]
RESERVED
- - request-tracker4 <unfixed>
+ - request-tracker4 4.4.1-4
CVE-2017-5943 [CSRF verification token information leak]
RESERVED
- - request-tracker4 <unfixed>
+ - request-tracker4 4.4.1-4
CVE-2017-5942 (An issue was discovered in the WP Mail plugin before 1.2 for WordPress. ...)
NOT-FOR-US: Wordpress plugin
CVE-2016-10222 (runtime/JSONObject.cpp in JavaScriptCore in WebKit, as distributed in ...)
@@ -13073,7 +13073,7 @@
RESERVED
CVE-2017-5361 [Timing side-channel vulnerability in password verification]
RESERVED
- - request-tracker4 <unfixed>
+ - request-tracker4 4.4.1-4
- rt-authen-externalauth <removed>
NOTE: https://github.com/bestpractical/rt-authen-externalauth/commit/436255c04b4881bb6d8eec9a57b8593033d863a9
CVE-2017-5360
@@ -37957,7 +37957,7 @@
NOTE: libtomcrypt, thus keep that source package as well for now associated.
CVE-2016-6127 [XSS in file uploads]
RESERVED
- - request-tracker4 <unfixed>
+ - request-tracker4 4.4.1-4
CVE-2016-6126 (IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote ...)
NOT-FOR-US: IBM
CVE-2016-6125 (IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 is vulnerable to ...)
More information about the Secure-testing-commits
mailing list