« Return to Thread: CVE-2007-3056

Re: CVE-2007-3056

by Sebastian Petters / 4wd media :: Rate this Message:

Reply to Author | View in Thread

I'm currently doing some kind of security review using an automatic tool
to find similar XSS and other security risks. Most of the issues i found
so far could be solved easily.
The tests take some time, i'll send a patch when i'm finished.

Sebastian

Timothy Armes schrieb:

> Seb's preparing a patch.
>
>
> On 11/08/07, *Matt Sicker* <boards@... <mailto:boards@...>>
> wrote:
>
>     On Thursday 09 August 2007, Gunnar Wrobel wrote:
>      > Hi!
>      >
>      > Gentoo provides websvn as a package and we are currently wondering
>      > about the status of this security issue:
>      >
>      > http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-3056
>      >
>      > Is this a relevant issue? Has it been fixed? Or should we remove the
>      > package from our distribution?
>      >
>      > You can find our corresponding bug here:
>      >
>      > http://bugs.gentoo.org/show_bug.cgi?id=180879
>      >
>      > Thanks!
>
>     Eh, this is kind of an old bug.  I'm not sure if it was ever fixed since
>     it would require a bit of a change in the code to do so.  I'd just wait
>     to see what Tim has to say perhaps.
>
>     --
>     Matt Sicker
>
>
>
>
> --
> http://www.timothyarmes.com

--
Sebastian Petters
www.4wdmedia.de

---------------------------------------------------------------------
To unsubscribe, e-mail: dev-unsubscribe@...
For additional commands, e-mail: dev-help@...

 « Return to Thread: CVE-2007-3056