Author: thijs Date: 2015-10-24 13:58:06 +0000 (Sat, 24 Oct 2015) New Revision: 37300
Modified: data/CVE/list Log: new pma low severity issue fixed in sid; add fixed version for unimportant pma issues Modified: data/CVE/list =================================================================== --- data/CVE/list 2015-10-24 13:01:54 UTC (rev 37299) +++ data/CVE/list 2015-10-24 13:58:06 UTC (rev 37300) @@ -149,8 +149,12 @@ NOT-FOR-US: Ctools module for Drupal CVE-2015-7874 RESERVED -CVE-2015-7873 +CVE-2015-7873 [phpMyadmin PMASA-2015-5 Content spoofing vulnerability when redirecting user to an external site] RESERVED + - phpmyadmin 4:4.5.1-1 (low) + [jessie] - phpmyadmin <no-dsa> (Minor issue) + [wheezy] - phpmyadmin <not-affected> (Vulnerable code not present) + [squeeze] - phpmyadmin <not-affected> (Vulnerable code not present) CVE-2015-7943 [Open Redirect - SA-CORE-2015-004] - drupal7 7.41-1 NOTE: https://www.drupal.org/SA-CORE-2015-004 @@ -15739,7 +15743,7 @@ CVE-2015-2207 RESERVED CVE-2015-2206 (libraries/select_lang.lib.php in phpMyAdmin 4.0.x before 4.0.10.9, ...) - - phpmyadmin <unfixed> (unimportant) + - phpmyadmin 4:4.4.4-1 (unimportant) NOTE: Hardening, not a concrete issue itself NOTE: http://www.phpmyadmin.net/home_page/security/PMASA-2015-1.php CVE-2015-2205 @@ -73848,7 +73852,7 @@ - linux <not-affected> (Android-specific drivers) - linux-2.6 <not-affected> (Android-specific drivers) CVE-2012-4219 (show_config_errors.php in phpMyAdmin 3.5.x before 3.5.2.1 allows ...) - - phpmyadmin <unfixed> (unimportant) + - phpmyadmin 4:4.0.1-1 (unimportant) NOTE: Path disclosure irrelevant in Debian CVE-2012-4218 (Use-after-free vulnerability in the ...) - iceape <not-affected> (Doesn't affect the ESR series, only releases from experimental) _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits