Author: jmm
Date: 2012-06-22 13:41:36 +0000 (Fri, 22 Jun 2012)
New Revision: 19556

Modified:
   data/CVE/list
Log:
tweak the mod_security entries a bit
serendipity in sid not affected by recent issue, code not present


Modified: data/CVE/list
===================================================================
--- data/CVE/list       2012-06-22 13:32:50 UTC (rev 19555)
+++ data/CVE/list       2012-06-22 13:41:36 UTC (rev 19556)
@@ -2092,7 +2092,7 @@
        NOTE: 
http://www.reactionpenetrationtesting.co.uk/advisories/scriptfu-buffer-overflow-GIMP-2.6.html
        NOTE: 
http://www.reactionpenetrationtesting.co.uk/advisories/scriptfubof.c
 CVE-2012-2762 (SQL injection vulnerability in 
include/functions_trackbacks.inc.php in ...)
-       - serendipity <unfixed> (bug #678139)
+       - serendipity <not-affected> (vulnerable code not present in 1.5.1, see 
bug #678139)
 CVE-2012-2761
        RESERVED
 CVE-2012-2760
@@ -2117,7 +2117,7 @@
 CVE-2012-2751
        RESERVED
        - modsecurity-apache <unfixed> (bug #678527)
-       - libapache-mod-security <unfixed> (bug #678529)
+       - libapache-mod-security <removed> (bug #678529)
        NOTE: http://www.openwall.com/lists/oss-security/2012/06/22/1
        NOTE: http://www.openwall.com/lists/oss-security/2012/06/22/2
 CVE-2012-2750
@@ -24554,8 +24554,8 @@
        - xulrunner <not-affected> (Only affects Firefox 4.x)
 CVE-2009-5031
        RESERVED
-       - modsecurity-apache 2.6.5-2
-       [squeeze] - libapache-mod-security 2.5.12-1
+       - modsecurity-apache <not-affected> (Fixed before initial upload)
+       - libapache-mod-security 2.5.12-1
        NOTE: 
https://www.modsecurity.org/fisheye/browse/modsecurity/m2/branches/2.5.x/apache2/msc_multipart.c?r2=1419&r1=1366
        NOTE: http://www.openwall.com/lists/oss-security/2012/06/22/1
        NOTE: http://www.openwall.com/lists/oss-security/2012/06/22/2


_______________________________________________
Secure-testing-commits mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to