[Secure-testing-commits] r50174 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Mar 29 16:35:25 UTC 2017


Author: carnil
Date: 2017-03-29 16:35:25 +0000 (Wed, 29 Mar 2017)
New Revision: 50174

Modified:
   data/CVE/list
Log:
Contacted moodle upstream re CVE-2017-7298

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-29 16:29:41 UTC (rev 50173)
+++ data/CVE/list	2017-03-29 16:35:25 UTC (rev 50174)
@@ -1,7 +1,7 @@
 CVE-2017-7298 (In Moodle 3.2.2+, there is XSS in the Course summary filter of the "Add ...)
 	- moodle <undetermined>
 	NOTE: http://www.daimacn.com/post/12.html
-	TODO: check, potentially only in Moodle 3.2
+	TODO: check, potentially only in Moodle 3.2; done: contacted moodle upstream
 CVE-2017-7297 (Rancher Labs rancher server 1.2.0+ is vulnerable to authenticated users ...)
 	NOT-FOR-US: Rancher Labs rancher server
 CVE-2017-7296




More information about the Secure-testing-commits mailing list