Author: jmm Date: 2012-08-20 09:34:24 +0000 (Mon, 20 Aug 2012) New Revision: 19988 Modified: data/CVE/list Log: filed bugs for piwigo and condor new postgres issues Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-08-20 09:02:44 UTC (rev 19987) +++ data/CVE/list 2012-08-20 09:34:24 UTC (rev 19988) @@ -186,7 +186,7 @@ CVE-2012-4272 (Multiple cross-site scripting (XSS) vulnerabilities in the 2 Click ...) TODO: check CVE-2012-4271 (Multiple cross-site scripting (XSS) vulnerabilities in ...) - TODO: check + NOT-FOR-US: Wordpress plugin CVE-2012-4270 (Cross-site scripting (XSS) vulnerability in eFront 3.6.11 allows ...) TODO: check CVE-2012-4269 (Unrestricted file upload vulnerability in eFront 3.6.11 allows remote ...) @@ -1842,8 +1842,12 @@ RESERVED CVE-2012-3489 RESERVED + - postgresql-9.1 9.1.5-1 + - postgresql-8.4 <unfixed> CVE-2012-3488 RESERVED + - postgresql-9.1 9.1.5-1 + - postgresql-8.4 <unfixed> CVE-2012-3487 RESERVED CVE-2012-3486 @@ -2054,6 +2058,7 @@ NOTE: this is at least fixed in 4.00, I could not trace this back to an exact version CVE-2012-3416 RESERVED + - condor <unfixed> (bug #685366) CVE-2012-3415 RESERVED - plpupload <itp> (bug #668396) @@ -5005,11 +5010,9 @@ CVE-2012-2210 (The Sony Bravia TV KDL-32CX525 allows remote attackers to cause a ...) NOT-FOR-US: Sony Bravia CVE-2012-2209 (Multiple cross-site scripting (XSS) vulnerabilities in admin.php in ...) - - piwigo <unfixed> - TODO: check + - piwigo <unfixed> (bug #685364) CVE-2012-2208 (Directory traversal vulnerability in upgrade.php in Piwigo before ...) - - piwigo <unfixed> - TODO: check + - piwigo <unfixed> (bug #685364) CVE-2012-2207 RESERVED CVE-2012-2206 (The Web Gateway component in IBM WebSphere MQ File Transfer Edition ...)