nion at alioth.debian.org
2008-Dec-13 14:59 UTC
[Secure-testing-commits] r10690 - data/CVE
Author: nion Date: 2008-12-13 14:59:37 +0000 (Sat, 13 Dec 2008) New Revision: 10690 Modified: data/CVE/list Log: roundcube fixed Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-12-13 12:14:42 UTC (rev 10689) +++ data/CVE/list 2008-12-13 14:59:37 UTC (rev 10690) @@ -3,7 +3,7 @@ [etch] - axel <no-dsa> (Minor issue) NOTE: http://alioth.debian.org/forum/forum.php?forum_id=2846 CVE-2008-XXXX [roundcube remote code execution via preg_replace in html2text.php] - - roundcube <unfixed> (high; bug #508628) + - roundcube 0.2~alpha-3 (high; bug #508628) NOTE: According to the bug report, this is being exploited. CVE-2008-XXXX [other symlink attack vectors in gpsdrive] - gpsdrive <unfixed> (bug #508597)