[Secure-testing-commits] r131 - sarge-checks/CAN

Paul Dwerryhouse pdwerryh-guest@haydn.debian.org
Thu, 18 Nov 2004 07:37:47 -0700


Author: pdwerryh-guest
Date: 2004-11-18 07:37:41 -0700 (Thu, 18 Nov 2004)
New Revision: 131

Modified:
   sarge-checks/CAN/list
Log:
Cleared up a couple of issues.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2004-11-18 13:07:11 UTC (rev 130)
+++ sarge-checks/CAN/list	2004-11-18 14:37:41 UTC (rev 131)
@@ -2489,7 +2489,7 @@
 CAN-2003-0863
 	NOTE: php4, this bug appears not to have been fixed.
 	NOTE: submitted to BTS on libapache-mod-php4
-	TODO: waiting for response
+	NOTE: developer claims there is no problem
 CAN-2003-0862
 	NOTE: rejected
 CAN-2003-0861
@@ -4227,8 +4227,9 @@
 CAN-2002-1568
 	- openssl 0.9.6g-1
 CAN-2002-1567
-	NOTE: tomcat4 cross-site vuln
-	TODO: check
+	NOTE: tomcat4 cross-site scripting vuln
+	NOTE: not sure if it's a problem or not
+	TODO: contacted package maintainers, waiting for response.
 CAN-2002-1566
 	- netris 0.52-1
 CAN-2002-1565