Author: micah Date: 2006-06-15 02:05:46 +0000 (Thu, 15 Jun 2006) New Revision: 4222 Modified: data/CVE/list data/DSA/list Log: Added DSA-1098-1 and DSA-1097-1 Added docuwiki fixed version number Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-06-15 01:54:31 UTC (rev 4221) +++ data/CVE/list 2006-06-15 02:05:46 UTC (rev 4222) @@ -271,7 +271,7 @@ CVE-2006-2879 (SQL injection vulnerability in newscomments.php in Alex News-Engine ...) NOT-FOR-US: Alex News-Engine CVE-2006-2878 (The spellchecker (spellcheck.php) in DokuWiki 2006/06/04 and earlier ...) - - dokuwiki <unfixed> (bug #370369; high) + - dokuwiki 0.0.20060309-4 (bug #370369; high) CVE-2006-2877 (PHP remote file inclusion vulnerability in Bookmark4U 2.0.0 and ...) NOT-FOR-US: Bookmark4U CVE-2006-2876 (Cross-site scripting (XSS) vulnerability in cat.php in PHP Pro Publish ...) Modified: data/DSA/list ==================================================================--- data/DSA/list 2006-06-15 01:54:31 UTC (rev 4221) +++ data/DSA/list 2006-06-15 02:05:46 UTC (rev 4222) @@ -1,3 +1,9 @@ +[14 Jun 2006] DSA-1098-1 - horde3 - missing input sanitising + {CVE-2006-2195} + [sarge] - horde3 3.0.4-4sarge4 +[14 Jun 2006] DSA-1097-1 kernel-source-2.4.27 - several vulnerabilities + {CVE-2006-0038 CVE-2006-0039 CVE-2006-0741 CVE-2006-0742 CVE-2006-1056 CVE-2006-1242 CVE-2006-1343 CVE-2006-1368 CVE-2006-1524 CVE-2006-1525 CVE-2006-1857 CVE-2006-1858 CVE-2006-1864 CVE-2006-2271 CVE-2006-2272 CVE-2006-2274} + [sarge] - kernel-source-2.4.27 2.4.27-10sarge3 [13 Jun 2006] DSA-1096-1 webcalendar - uninitialised variable {CVE-2006-2762} [sarge] - webcalendar 0.9.45-4sarge5