Author: fgeek-guest Date: 2012-05-10 21:27:07 +0000 (Thu, 10 May 2012) New Revision: 19200 Modified: data/CVE/list Log: Moved CVE-2011-2687 to correct location. Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-05-10 21:25:58 UTC (rev 19199) +++ data/CVE/list 2012-05-10 21:27:07 UTC (rev 19200) @@ -9393,12 +9393,6 @@ CVE-2011-XXXX [0.1.1+dfsg-1 multiple issues] - ibid 0.1.1+dfsg-1 [squeeze] - ibid 0.1.0+dfsg-2+squeeze1 -CVE-2011-2687 (Drupal 7.x before 7.3 allows remote attackers to bypass intended ...) - NOTE: http://drupal.org/node/1168756 - - drupal7 7.2-1 (bug #633385) - - drupal6 6.22-1 - [squeeze] - drupal6 6.18-1squeeze1 - TODO: Check status of "Reflected cross site scripting vulnerability in error handler" in Squeeze CVE-2011-4025 RESERVED CVE-2010-4892 (Cross-site scripting (XSS) vulnerability in the powermail extension ...) @@ -13534,6 +13528,12 @@ CVE-2011-2688 (SQL injection vulnerability in mysql/mysql-auth.pl in the ...) {DSA-2279-1} - libapache2-mod-authnz-external 3.2.4-2.1 (medium; bug #633637) +CVE-2011-2687 (Drupal 7.x before 7.3 allows remote attackers to bypass intended ...) + NOTE: http://drupal.org/node/1168756 + - drupal7 7.2-1 (bug #633385) + - drupal6 6.22-1 + [squeeze] - drupal6 6.18-1squeeze1 + TODO: Check status of "Reflected cross site scripting vulnerability in error handler" in Squeeze CVE-2011-2686 (Ruby before 1.8.7-p352 does not reset the random seed upon forking, ...) - ruby1.8 1.8.7.352-1 (low; bug #635878) - ruby1.9 <unfixed> (low)