|
Message-ID: <Pine.GSO.4.51.0812031248200.15404@faron.mitre.org> Date: Wed, 3 Dec 2008 12:48:24 -0500 (EST) From: "Steven M. Christey" <coley@...us.mitre.org> To: oss-security@...ts.openwall.com cc: "Steven M. Christey" <coley@...us.mitre.org> Subject: Re: CVE request: tikiwiki < 2.2 ====================================================== Name: CVE-2008-5318 Status: Candidate URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5318 Reference: CONFIRM:http://info.tikiwiki.org/tiki-read_article.php?articleId=41 Reference: CONFIRM:http://tikiwiki.svn.sourceforge.net/viewvc/tikiwiki/branches/2.0/changelog.txt?view=markup Reference: OSVDB:50058 Reference: URL:http://www.osvdb.org/50058 Reference: SECUNIA:32341 Reference: URL:http://secunia.com/advisories/32341 Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact and attack vectors related to "size of user-provided input," a different issue than CVE-2008-3653. ====================================================== Name: CVE-2008-5319 Status: Candidate URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-5319 Reference: CONFIRM:http://info.tikiwiki.org/tiki-read_article.php?articleId=41 Reference: CONFIRM:http://tikiwiki.svn.sourceforge.net/viewvc/tikiwiki/branches/2.0/changelog.txt?view=markup Reference: OSVDB:50058 Reference: URL:http://www.osvdb.org/50058 Reference: SECUNIA:32341 Reference: URL:http://secunia.com/advisories/32341 Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact and attack vectors related to tiki-error.php, a different issue than CVE-2008-3653.
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.