[Secure-testing-commits] r55655 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Sep 11 18:31:05 UTC 2017


Author: carnil
Date: 2017-09-11 18:31:05 +0000 (Mon, 11 Sep 2017)
New Revision: 55655

Modified:
   data/CVE/list
Log:
Addwordpress-shibboleth issue, #874416

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-11 16:43:35 UTC (rev 55654)
+++ data/CVE/list	2017-09-11 18:31:05 UTC (rev 55655)
@@ -5,6 +5,10 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2017/09/11/1
 	NOTE: https://debbugs.gnu.org/cgi/bugreport.cgi?bug=28350
 	NOTE: https://git.savannah.gnu.org/cgit/emacs.git/commit/?h=emacs-25&id=9ad0fcc54442a9a01d41be19880250783426db70
+CVE-2015-XXXX [XSS due to add_query_arg]
+	- wordpress-shibboleth 1.8-1 (bug #874416)
+	NOTE: https://github.com/michaelryanmcneill/shibboleth/commit/1d65ad6786282d23ba1865f56e2fd19188e7c26a
+	NOTE: https://make.wordpress.org/plugins/2015/04/20/fixing-add_query_arg-and-remove_query_arg-usage/
 CVE-2017-14269
 	RESERVED
 CVE-2017-14268




More information about the Secure-testing-commits mailing list