Git-Url: 
http://git.frugalware.org/gitweb/gitweb.cgi?p=homepage-ng.git;a=commitdiff;h=f4f8019c689719e420c624e83e7b80e47394fa8a

commit f4f8019c689719e420c624e83e7b80e47394fa8a
Author: Miklos Vajna <vmik...@frugalware.org>
Date:   Mon Apr 12 23:49:44 2010 +0200

FSA656-drupal6-views

diff --git a/frugalware/xml/security.xml b/frugalware/xml/security.xml
index 70f0e72..c5c400d 100644
--- a/frugalware/xml/security.xml
+++ b/frugalware/xml/security.xml
@@ -26,6 +26,19 @@

<fsas>
<fsa>
+               <id>656</id>
+               <date>2010-04-12</date>
+               <author>Miklos Vajna</author>
+               <package>drupal6-views</package>
+               <vulnerable>6.x_2.8-1</vulnerable>
+               <unaffected>6.x_2.10-1locris1</unaffected>
+               <bts>http://bugs.frugalware.org/task/4179</bts>
+               <cve>No CVE reference, see http://drupal.org/node/765022.</cve>
+               <desc>A vulnerability has been reported in the Views module for 
Drupal, which can be exploited by malicious users to compromise a vulnerable 
system.
+                       Certain unspecified input is not properly sanitised 
before being used to import views. This can be exploited to execute arbitrary 
PHP code.
+                       Successful exploitation requires "administer views" 
permissions.</desc>
+       </fsa>
+       <fsa>
<id>655</id>
<date>2010-04-12</date>
<author>Miklos Vajna</author>
_______________________________________________
Frugalware-git mailing list
Frugalware-git@frugalware.org
http://frugalware.org/mailman/listinfo/frugalware-git

Reply via email to