[Secure-testing-commits] r211 - sarge-checks/CAN

Joey Hess joeyh@haydn.debian.org
Thu, 23 Dec 2004 19:34:52 -0700


Author: joeyh
Date: 2004-12-23 19:34:48 -0700 (Thu, 23 Dec 2004)
New Revision: 211

Modified:
   sarge-checks/CAN/list
Log:
updates


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2004-12-23 22:36:49 UTC (rev 210)
+++ sarge-checks/CAN/list	2004-12-24 02:34:48 UTC (rev 211)
@@ -368,7 +368,7 @@
 CAN-2004-1139
 	NOTE: reserved
 CAN-2004-1138 (Unknown vulnerability in Vim modeline options, such as (1) termcap, ...)
-	- vim 1:6.3-046+1
+	- vim 1:6.3-046+0sarge1
 CAN-2004-1137 (Multiple vulnerabilities in the IGMP functionality for Linux kernel ...)
 	NOTE: Fixed in kernel team svn
 	TODO: track fix
@@ -605,12 +605,13 @@
 CAN-2004-1027 (The -x command line option in unarj allows remote attackers to ...)
 	NOTE: sarge's unarj is from a different code base, probably not vulnerable
 CAN-2004-1026 (Multiple integer overflows in the image handler for imlib 1.9.14 and ...)
-	- imlib (unfixed; bug #284925)
-	- imlib-png2 (unfixed; bug #284925)
+	- imlib 1.9.14-17.1
+	- imlib-png2 1.9.14-16.1
 CAN-2004-1025 (Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, ...)
 	NOTE: fixed in patches for CAN-2004-1026
 CAN-2004-1024
 	NOTE: reserved
+	- fluxbox (unfixed; bug #287016)
 CAN-2004-1023 (Kerio Winroute Firewall before 6.0.9, ServerFirewall before 1.0.1, and ...)
 	NOTE: not-for-us (Kerio)
 CAN-2004-1022 (Kerio Winroute Firewall before 6.0.7, ServerFirewall before 1.0.1, and ...)