white at alioth.debian.org
2007-Dec-11 19:09 UTC
[Secure-testing-commits] r7592 - data/CVE
Author: white Date: 2007-12-11 19:08:59 +0000 (Tue, 11 Dec 2007) New Revision: 7592 Modified: data/CVE/list Log: Another mysql issue Modified: data/CVE/list ==================================================================--- data/CVE/list 2007-12-11 19:01:44 UTC (rev 7591) +++ data/CVE/list 2007-12-11 19:08:59 UTC (rev 7592) @@ -1,6 +1,9 @@ CVE-2007-6304 [potential DoS by remote MySQL servers via a response that lacks the minimum required number of columns] - mysql-dfsg-5.0 <unfixed> (low; bug #455737) TODO: check mysql4 +CVE-2007-6303 [remote authenticated users can gain privileges via a sequence of statements] + - mysql-dfsg-5.0 <unfixed> (low; bug #455737) + TODO: check mysql4 CVE-2007-6299 [SQL injection in Drupal when certain contributed modules are enabled] - drupal5 5.5-1 - drupal 4.7.10-1 @@ -750,6 +753,7 @@ TODO: check mysql 4 CVE-2007-5968 RESERVED + - mysql-dfsg-5.0 <unfixed> CVE-2007-5967 RESERVED CVE-2007-5966