[geeklog-devtalk] geeklog-devel digest, Vol 1 #302 - 1 msg
geeklog-devel-request at lists.geeklog.net
geeklog-devel-request at lists.geeklog.net
Sat Apr 3 13:00:02 EST 2004
Send geeklog-devel mailing list submissions to
geeklog-devel at lists.geeklog.net
To subscribe or unsubscribe via the World Wide Web, visit
http://lists.geeklog.net/listinfo/geeklog-devel
or, via email, send a message with subject or body 'help' to
geeklog-devel-request at lists.geeklog.net
You can reach the person managing the list at
geeklog-devel-admin at lists.geeklog.net
When replying, please edit your Subject line so it is more specific
than "Re: Contents of geeklog-devel digest..."
Today's Topics:
1. Geeklog in osvdb.org (Dirk Haun)
--__--__--
Message: 1
From: "Dirk Haun" <dirk at haun-online.de>
To: <geeklog-devel at lists.geeklog.net>
Date: Fri, 2 Apr 2004 20:15:30 +0200
Organization: Terra Software Systems
Subject: [geeklog-devel] Geeklog in osvdb.org
Reply-To: geeklog-devel at lists.geeklog.net
A new site, called the open source vulnerability database, has been launched:
http://www.osvdb.org/
Even though it's a (relatively) new site, they also list old
vulnerabilities. Not surprisingly, it also has information on 12 issues
with Geeklog:
http://www.osvdb.org/searchdb.php?
action=search_title&vuln_title=geeklog&Search=Search
Some of the entries don't list any details yet, since they are "lacking
proper or complete infomation, and is in queue for processing by either a
Data Mangler or Moderator."
Others do list details. However, they also contain incorrect information.
E.g. <http://www.osvdb.org/displayvuln.php?osvdb_id=3273> refers to the
file management plugin, and recommends " Upgrade to version 1.3.8-1sr3 or
higher, as it has been reported to fix this vulnerability." which is of
course not correct.
Another example: <http://www.osvdb.org/displayvuln.php?osvdb_id=2253>
refers to problems that were found in the forum.
*sigh* I guess I have to work my way through those and send in corrections.
I'll CC: the list when I do that (which may take a while ...).
bye, Dirk
--
http://www.haun-online.de/
http://mypod.de/
--__--__--
_______________________________________________
geeklog-devel mailing list
geeklog-devel at lists.geeklog.net
http://lists.geeklog.net/listinfo/geeklog-devel
End of geeklog-devel Digest
More information about the geeklog-devtalk
mailing list