Re: Please help with discrepancies in CVE-2011-3578

2012-06-16 Thread Dario Minnucci
Hi, On 06/16/2012 01:09 PM, Thijs Kinkhorst wrote: > On Sat, June 16, 2012 00:40, s...@powered-by-linux.com wrote: >> Hi Team, >> >> I had prepared a new security-stable version for mantis package to fix >> some new CVE's, and I found out that CVE-2011-3578 [1], patched on mantis >> 1.1.8+dfsg-10

Re: Please help with discrepancies in CVE-2011-3578

2012-06-16 Thread sils
On Sat, 16 Jun 2012 13:09:43 +0200, "Thijs Kinkhorst" wrote: >> The CVE-2011-3578 was not yet assigned when the security package, >> including the patch [2], >> 12-Fix-640297-LFI-XSS-injection-bug-action-group-1.diff [3], was uploaded >> and fixed. >> >> Please, could you update the tracker and fi

Re: Please help with discrepancies in CVE-2011-3578

2012-06-16 Thread Thijs Kinkhorst
On Sat, June 16, 2012 00:40, s...@powered-by-linux.com wrote: > Hi Team, > > I had prepared a new security-stable version for mantis package to fix > some new CVE's, and I found out that CVE-2011-3578 [1], patched on mantis > 1.1.8+dfsg-10squeeze1, from 2011, was not yet updated in the security > t

Please help with discrepancies in CVE-2011-3578

2012-06-15 Thread sils
Hi Team, I had prepared a new security-stable version for mantis package to fix some new CVE's, and I found out that CVE-2011-3578 [1], patched on mantis 1.1.8+dfsg-10squeeze1, from 2011, was not yet updated in the security tracker. The CVE-2011-3578 was not yet assigned when the security package