thijs at alioth.debian.org
2008-Dec-22 08:22 UTC
[Secure-testing-commits] r10773 - data/CVE
Author: thijs Date: 2008-12-22 08:22:43 +0000 (Mon, 22 Dec 2008) New Revision: 10773 Modified: data/CVE/list Log: moodle in etch not vulnerable, copied code in just recently Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-12-22 06:53:32 UTC (rev 10772) +++ data/CVE/list 2008-12-22 08:22:43 UTC (rev 10773) @@ -506,6 +506,7 @@ - roundcube 0.1.1-9 (high; bug #508628) NOTE: According to the bug report, this is being exploited. - moodle 1.8.2.dfsg-2 (bug #508909) + [etch] - moodle <not-affected> (Vulnerable code not present) NOTE: moodle recently copied roundcube''s html2text due to their copy being non-free CVE-2008-XXXX [other symlink attack vectors in gpsdrive] - gpsdrive <unfixed> (bug #508597)