Author: fgeek-guest
Date: 2012-06-26 10:15:12 +0000 (Tue, 26 Jun 2012)
New Revision: 19603

Modified:
   data/CVE/list
Log:
Added bug report for viewvc CVE-2012-3356 / CVE-2012-3357

Modified: data/CVE/list
===================================================================
--- data/CVE/list       2012-06-26 10:01:43 UTC (rev 19602)
+++ data/CVE/list       2012-06-26 10:15:12 UTC (rev 19603)
@@ -886,7 +886,7 @@
        RESERVED
 CVE-2012-3357 [viewvc log msg leak in SVN revision view with unreadable copy 
source]
        RESERVED
-       - viewvc <unfixed>
+       - viewvc <unfixed> (bug #679069)
        TODO: Check if 1.1.5-1.1 is affected
        NOTE: http://viewvc.tigris.org/issues/show_bug.cgi?id=353
        NOTE: 
http://viewvc.tigris.org/source/browse/viewvc?view=rev&revision=2755
@@ -896,7 +896,7 @@
        NOTE: 
http://viewvc.tigris.org/source/browse/viewvc?view=rev&revision=2760
 CVE-2012-3356 [viewvc complete authz support for remote SVN views]
        RESERVED
-       - viewvc <unfixed>
+       - viewvc <unfixed> (bug #679069)
        TODO: Check if 1.1.5-1.1 is affected
        NOTE: 
http://viewvc.tigris.org/source/browse/viewvc?view=rev&revision=2758
 CVE-2012-3355 [rhythmbox insecure temporary directory used by loading template 
files]


_______________________________________________
Secure-testing-commits mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to