Author: jmm
Date: 2017-01-14 15:56:58 +0000 (Sat, 14 Jan 2017)
New Revision: 48049

Modified:
   data/CVE/list
Log:
moodle bug


Modified: data/CVE/list
===================================================================
--- data/CVE/list       2017-01-14 15:56:00 UTC (rev 48048)
+++ data/CVE/list       2017-01-14 15:56:58 UTC (rev 48049)
@@ -13635,11 +13635,11 @@
        NOTE: https://github.com/python-pillow/Pillow/issues/2105
        NOTE: 
https://github.com/python-pillow/Pillow/pull/2146/commits/c50ebe6459a131a1ea8ca531f10da616d3ceaa0f
 CVE-2016-9188 (Cross-site scripting (XSS) vulnerabilities in Moodle CMS on or 
before ...)
-       - moodle <unfixed> (low)
+       - moodle <unfixed> (low; bug #851405)
 CVE-2016-9187 (Unrestricted file upload vulnerability in the double extension 
support ...)
-       - moodle <unfixed> (low)
+       - moodle <unfixed> (low; bug #851405)
 CVE-2016-9186 (Unrestricted file upload vulnerability in the &quot;legacy 
course files&quot; and ...)
-       - moodle <unfixed> (low)
+       - moodle <unfixed> (low; bug #851405)
 CVE-2016-9185 (In OpenStack Heat, by launching a new Heat stack with a local 
URL an ...)
        - heat 1:7.0.0-2 (bug #843232)
        [jessie] - heat <no-dsa> (Minor issue)


_______________________________________________
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to