[Secure-testing-commits] r124 - sarge-checks/CVE
Joey Hess
joeyh@haydn.debian.org
Tue, 16 Nov 2004 12:49:48 -0700
Author: joeyh
Date: 2004-11-16 12:49:25 -0700 (Tue, 16 Nov 2004)
New Revision: 124
Modified:
sarge-checks/CVE/list
Log:
convert some notes that reference bug numbers to the format used by the
automated checker
Modified: sarge-checks/CVE/list
===================================================================
--- sarge-checks/CVE/list 2004-11-16 19:37:08 UTC (rev 123)
+++ sarge-checks/CVE/list 2004-11-16 19:49:25 UTC (rev 124)
@@ -334,15 +334,9 @@
NOTE: never vulnerable to the problem described.
NOTE: this CVE is bogus.
CVE-2003-0023
- NOTE: I'm not sure if this is fix in rxvt 2.6.4-6.1
- NOTE: I've mailed maintainers
- NOTE: No response from maintainers, I've open bug #280873
- TODO: check
+ - rxvt 2.6.4-6.1
CVE-2003-0022
- NOTE: I'm not sure if this is fix in rxvt 2.6.4-6.1
- NOTE: I've mailed maintainers
- NOTE: No response from maintainers, I've open bug #280873
- TODO: check
+ - rxvt 2.6.4-6.1
CVE-2003-0021
- eterm 0.9.2-1
NOTE: According to upstream changelog and http://marc.theaimsgroup.com/?l=bugtraq&m=104612710031920&w=2
@@ -565,8 +559,7 @@
- flashplugin-nonfree 6.0.69-1
CVE-2002-1381
- exim4 4.11-0.0.1
- NOTE: exim 3.x is still vulnerable in woody, sarge and sid see bug #171774
- TODO: check
+ - exim (unfixed; bug #171774)
CVE-2002-1380
- kernel-source-2.2.25
NOTE: covered by DSA-336