Git-Url: http://git.frugalware.org/gitweb/gitweb.cgi?p=homepage-ng.git;a=commitdiff;h=e0c26fc277cfb08b0a62349a072c9b37c3d6952a
commit e0c26fc277cfb08b0a62349a072c9b37c3d6952a Author: Miklos Vajna <[EMAIL PROTECTED]> Date: Sat Feb 9 13:47:59 2008 +0100 FSA367-qt4 diff --git a/frugalware/xml/security.xml b/frugalware/xml/security.xml index b006f3d..f00eb71 100644 --- a/frugalware/xml/security.xml +++ b/frugalware/xml/security.xml @@ -27,6 +27,18 @@ <fsas> <fsa> + <id>367</id> + <date>2008-02-08</date> + <author>vmiklos</author> + <package>qt4</package> + <vulnerable>4.3.1-3</vulnerable> + <unaffected>4.3.1-4sayshell1</unaffected> + <bts>http://bugs.frugalware.org/task/2716</bts> + <cve>http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5965</cve> + <desc>A vulnerability has been reported in Qt, which can be exploited by malicious people to bypass certain security restrictions. + The vulnerability is caused due to an error within the certificate validation in QSslSocket, which can be exploited to e.g. trick an application using QSslSocket into accepting spoofed certificates.</desc> + </fsa> + <fsa> <id>366</id> <date>2008-01-24</date> <author>vmiklos</author> _______________________________________________ Frugalware-git mailing list [email protected] http://frugalware.org/mailman/listinfo/frugalware-git
