[Secure-testing-commits] r56490 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sat Oct 7 09:17:47 UTC 2017
Author: carnil
Date: 2017-10-07 09:17:47 +0000 (Sat, 07 Oct 2017)
New Revision: 56490
Modified:
data/CVE/list
Log:
Process NFUs
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-10-07 09:17:36 UTC (rev 56489)
+++ data/CVE/list 2017-10-07 09:17:47 UTC (rev 56490)
@@ -91230,7 +91230,7 @@
NOTE: This is no longer a security issue starting with icehouse, so marking 2014.1 as fixed
NOTE: https://bugs.launchpad.net/nova/+bug/1419577
CVE-2015-2673 (The ec_ajax_update_option and ec_ajax_clear_all_taxrates functions in ...)
- TODO: check
+ NOT-FOR-US: WP EasyCart plugin for Wordpress
CVE-2015-2671
RESERVED
CVE-2015-2670
@@ -92855,19 +92855,19 @@
CVE-2015-2149 (Multiple cross-site scripting (XSS) vulnerabilities in the administrative ...)
NOT-FOR-US: MyBB
CVE-2015-2148 (Multiple cross-site scripting (XSS) vulnerabilities in Issuetracker ...)
- TODO: check
+ NOT-FOR-US: phpBugTracker
CVE-2015-2147 (Multiple SQL injection vulnerabilities in Issuetracker phpBugTracker ...)
- TODO: check
+ NOT-FOR-US: phpBugTracker
CVE-2015-2146 (Multiple SQL injection vulnerabilities in Issuetracker phpBugTracker ...)
- TODO: check
+ NOT-FOR-US: phpBugTracker
CVE-2015-2145 (Multiple cross-site scripting (XSS) vulnerabilities in Issuetracker ...)
- TODO: check
+ NOT-FOR-US: phpBugTracker
CVE-2015-2144 (Multiple cross-site scriping (XSS) vulnerabilities in Issuetracker ...)
- TODO: check
+ NOT-FOR-US: phpBugTracker
CVE-2015-2143 (Multiple cross-site request forgery (CSRF) vulnerabilities in ...)
- TODO: check
+ NOT-FOR-US: phpBugTracker
CVE-2015-2142 (Multiple cross-site request forgery (CSRF) vulnerabilities in ...)
- TODO: check
+ NOT-FOR-US: phpBugTracker
CVE-2015-2141 (The InvertibleRWFunction::CalculateInverse function in rw.cpp in ...)
{DSA-3296-1 DLA-262-1}
- libcrypto++ 5.6.1-7
@@ -95014,7 +95014,7 @@
CVE-2015-1434 (Multiple SQL injection vulnerabilities in my little forum before 2.3.4 ...)
NOT-FOR-US: Little forum
CVE-2015-1429 (Directory traversal vulnerability in Cybele Software Thinfinity Remote ...)
- TODO: check
+ NOT-FOR-US: Cybele Software Thinfinity Remote Desktop Workstation
CVE-2015-1428 (Multiple SQL injection vulnerabilities in Sefrengo before 1.6.2 allow ...)
NOT-FOR-US: Sefrengo
CVE-2015-1427 (The Groovy scripting engine in Elasticsearch before 1.3.8 and 1.4.x ...)
More information about the Secure-testing-commits
mailing list