[Secure-testing-commits] r124 - sarge-checks/CVE

Joey Hess joeyh@haydn.debian.org
Tue, 16 Nov 2004 12:49:48 -0700


Author: joeyh
Date: 2004-11-16 12:49:25 -0700 (Tue, 16 Nov 2004)
New Revision: 124

Modified:
   sarge-checks/CVE/list
Log:
convert some notes that reference bug numbers to the format used by the
automated checker


Modified: sarge-checks/CVE/list
===================================================================
--- sarge-checks/CVE/list	2004-11-16 19:37:08 UTC (rev 123)
+++ sarge-checks/CVE/list	2004-11-16 19:49:25 UTC (rev 124)
@@ -334,15 +334,9 @@
 	NOTE: never vulnerable to the problem described.
 	NOTE: this CVE is bogus.
 CVE-2003-0023
-	NOTE: I'm not sure if this is fix in rxvt 2.6.4-6.1
-	NOTE: I've mailed maintainers
-	NOTE: No response from maintainers, I've open bug #280873
-	TODO: check
+	- rxvt 2.6.4-6.1
 CVE-2003-0022
-	NOTE: I'm not sure if this is fix in rxvt 2.6.4-6.1
-	NOTE: I've mailed maintainers
-	NOTE: No response from maintainers, I've open bug #280873
-	TODO: check
+	- rxvt 2.6.4-6.1
 CVE-2003-0021
 	- eterm 0.9.2-1
 	NOTE: According to upstream changelog and http://marc.theaimsgroup.com/?l=bugtraq&m=104612710031920&w=2
@@ -565,8 +559,7 @@
 	- flashplugin-nonfree 6.0.69-1
 CVE-2002-1381
 	- exim4 4.11-0.0.1
-	NOTE: exim 3.x is still vulnerable in woody, sarge and sid see bug #171774
-	TODO: check
+	- exim (unfixed; bug #171774)
 CVE-2002-1380
 	- kernel-source-2.2.25
 	NOTE: covered by DSA-336