[Secure-testing-commits] r49609 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sun Mar 12 16:22:03 UTC 2017
Author: carnil
Date: 2017-03-12 16:22:02 +0000 (Sun, 12 Mar 2017)
New Revision: 49609
Modified:
data/CVE/list
Log:
Update CVE-2017-6816/wordpress
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-03-12 16:21:13 UTC (rev 49608)
+++ data/CVE/list 2017-03-12 16:22:02 UTC (rev 49609)
@@ -20,8 +20,6 @@
TODO: check
CVE-2017-6817 (In WordPress before 4.7.3 (wp-includes/embed.php), there is ...)
TODO: check
-CVE-2017-6816 (In WordPress before 4.7.3 (wp-admin/plugins.php), unintended files can ...)
- TODO: check
CVE-2017-6820 [XSS issue in handling of a style tag inside of an svg element]
- roundcube <unfixed> (bug #857473)
NOTE: https://github.com/roundcube/roundcubemail/commit/fa2824fdcd44af3f970b2797feb47652482c8305
@@ -662,7 +660,7 @@
- wordpress 4.7.3+dfsg-1 (bug #857026)
NOTE: https://wordpress.org/news/2017/03/wordpress-4-7-3-security-and-maintenance-release/
NOTE: https://github.com/WordPress/WordPress/commit/288cd469396cfe7055972b457eb589cea51ce40e
-CVE-2017-XXXX [Unintended files can be deleted by administrators using the plugin deletion functionality]
+CVE-2017-6816 [Unintended files can be deleted by administrators using the plugin deletion functionality]
- wordpress 4.7.3+dfsg-1 (bug #857026)
[jessie] - wordpress <not-affected> (Only affects 4.7.x)
[wheezy] - wordpress <not-affected> (Only affects 4.7.x)
More information about the Secure-testing-commits
mailing list