jmm-guest at alioth.debian.org
2007-Oct-18 06:39 UTC
[Secure-testing-commits] r7000 - data/CVE
Author: jmm-guest Date: 2007-10-18 06:39:03 +0000 (Thu, 18 Oct 2007) New Revision: 7000 Modified: data/CVE/list Log: new asterisk issue not affecting mainline asterisk Modified: data/CVE/list ==================================================================--- data/CVE/list 2007-10-17 21:02:44 UTC (rev 6999) +++ data/CVE/list 2007-10-18 06:39:03 UTC (rev 7000) @@ -1,3 +1,5 @@ +CVE-2007-5488 [Asterisk SQL Injection Vulnerability in cdr_addon_mysql] + - asterisk-addons 1.4.4-1 CVE-2007-5471 (libgssapi before 0.6-13.7, as used by the ISC BIND named daemon in ...) - libgssapi 0.8-1 CVE-2007-5470 (Microsoft Expression Media stores the catalog password in cleartext in ...)