[geeklog-devtalk] geeklog-devel digest, Vol 1 #302 - 1 msg

geeklog-devel-request at lists.geeklog.net geeklog-devel-request at lists.geeklog.net
Sat Apr 3 13:00:02 EST 2004


Send geeklog-devel mailing list submissions to
geeklog-devel at lists.geeklog.net

To subscribe or unsubscribe via the World Wide Web, visit
http://lists.geeklog.net/listinfo/geeklog-devel
or, via email, send a message with subject or body 'help' to
geeklog-devel-request at lists.geeklog.net

You can reach the person managing the list at
geeklog-devel-admin at lists.geeklog.net

When replying, please edit your Subject line so it is more specific
than "Re: Contents of geeklog-devel digest..."


Today's Topics:

1. Geeklog in osvdb.org (Dirk Haun)

--__--__--

Message: 1
From: "Dirk Haun" <dirk at haun-online.de>
To: <geeklog-devel at lists.geeklog.net>
Date: Fri, 2 Apr 2004 20:15:30 +0200
Organization: Terra Software Systems
Subject: [geeklog-devel] Geeklog in osvdb.org
Reply-To: geeklog-devel at lists.geeklog.net

A new site, called the open source vulnerability database, has been launched:

http://www.osvdb.org/

Even though it's a (relatively) new site, they also list old
vulnerabilities. Not surprisingly, it also has information on 12 issues
with Geeklog:

http://www.osvdb.org/searchdb.php?
action=search_title&vuln_title=geeklog&Search=Search

Some of the entries don't list any details yet, since they are "lacking
proper or complete infomation, and is in queue for processing by either a
Data Mangler or Moderator."

Others do list details. However, they also contain incorrect information.
E.g. <http://www.osvdb.org/displayvuln.php?osvdb_id=3273> refers to the
file management plugin, and recommends " Upgrade to version 1.3.8-1sr3 or
higher, as it has been reported to fix this vulnerability." which is of
course not correct.

Another example: <http://www.osvdb.org/displayvuln.php?osvdb_id=2253>
refers to problems that were found in the forum.

*sigh* I guess I have to work my way through those and send in corrections.

I'll CC: the list when I do that (which may take a while ...).

bye, Dirk


--
http://www.haun-online.de/
http://mypod.de/



--__--__--

_______________________________________________
geeklog-devel mailing list
geeklog-devel at lists.geeklog.net
http://lists.geeklog.net/listinfo/geeklog-devel


End of geeklog-devel Digest



More information about the geeklog-devtalk mailing list