Author: pedrib-guest Date: 2010-01-25 00:09:32 +0000 (Mon, 25 Jan 2010) New Revision: 13903 Modified: data/CVE/list Log: resolved latent issue CVE-2006-0147 Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-01-24 23:56:48 UTC (rev 13902) +++ data/CVE/list 2010-01-25 00:09:32 UTC (rev 13903) @@ -62176,7 +62176,7 @@ {DSA-1031-1 DSA-1030-1 DSA-1029-1} - libphp-adodb 4.72-0.1 (bug #358872; medium) - moodle 1.6.1+20060825-1 (bug #360396; medium) - - cacti 0.8.6c-7sarge3 (medium) + - cacti 0.8.6d-1 (medium) NOTE: according to maintainer, "Moodle neither uses nor plans to use NOTE: ADODB_Pager, so it''s not affected by #360396, but include patch for NOTE: it anyway, just in case somebody decides to use it out of the blue @@ -63227,7 +63227,7 @@ {DSA-1031-1 DSA-1030-1 DSA-1029-1} - libphp-adodb 4.72-0.1 (bug #349985; medium) - moodle 1.6-1 (bug #360395; medium) - - cacti 0.8.6c-7sarge3 (medium) + - cacti 0.8.6d-1 (medium) CVE-2006-0409 (Cross-site scripting (XSS) vulnerability in index.php in Pixelpost ...) NOT-FOR-US: Pixelpost Photoblog CVE-2006-0408 (rsh utility in Sun Grid Engine (SGE) before 6.0u7_1 allows local users ...) @@ -63897,6 +63897,8 @@ {DSA-1031-1 DSA-1030-1 DSA-1029-1} - libphp-adodb 4.72-0.1 (medium; bug #349985) - cacti 0.8.6d-1 + - moodle 1.6.3-2 + NOTE: exact moodle fixed version not known, but at least <= 1.6.3-2 CVE-2006-0146 (The server.php test script in ADOdb for PHP before 4.70, as used in ...) {DSA-1031-1 DSA-1030-1 DSA-1029-1} - libphp-adodb 4.72-0.1 (medium; bug #349985)