nion at alioth.debian.org
2008-Dec-14 15:59 UTC
[Secure-testing-commits] r10693 - data/CVE
Author: nion Date: 2008-12-14 15:59:00 +0000 (Sun, 14 Dec 2008) New Revision: 10693 Modified: data/CVE/list Log: fixed roundcube version in unstable Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-12-14 11:26:14 UTC (rev 10692) +++ data/CVE/list 2008-12-14 15:59:00 UTC (rev 10693) @@ -3,7 +3,7 @@ [etch] - axel <no-dsa> (Minor issue) NOTE: http://alioth.debian.org/forum/forum.php?forum_id=2846 CVE-2008-XXXX [roundcube remote code execution via preg_replace in html2text.php] - - roundcube 0.2~alpha-3 (high; bug #508628) + - roundcube 0.1.1-9 (high; bug #508628) NOTE: According to the bug report, this is being exploited. CVE-2008-XXXX [other symlink attack vectors in gpsdrive] - gpsdrive <unfixed> (bug #508597)