[Secure-testing-commits] r135 - sarge-checks/CVE

Joey Hess joeyh@haydn.debian.org
Sat, 20 Nov 2004 14:09:05 -0700


Author: joeyh
Date: 2004-11-20 14:08:58 -0700 (Sat, 20 Nov 2004)
New Revision: 135

Modified:
   sarge-checks/CVE/list
Log:
checked some CVEs


Modified: sarge-checks/CVE/list
===================================================================
--- sarge-checks/CVE/list	2004-11-19 18:38:28 UTC (rev 134)
+++ sarge-checks/CVE/list	2004-11-20 21:08:58 UTC (rev 135)
@@ -738,31 +738,31 @@
 end claimed by djoume
 
 CVE-2002-1188
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1187
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1186
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1185
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1184
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1183
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1182
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1180
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1179
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1178
-	TODO: check
+	- jetty 4.1.0
 CVE-2002-1170
-	TODO: check
+	- net-snmp 5.0.6
 CVE-2002-1169
-	TODO: check
+	NOTE: not-for-us (IBM Web Traffic Express Caching Proxy Server)
 CVE-2002-1160
-	TODO: check
+	NOTE: not-for-us (pam_xauth)
 CVE-2002-1159
 	NOTE: covered by DSA-224
 CVE-2002-1158
@@ -770,49 +770,49 @@
 CVE-2002-1157
 	NOTE: covered by DSA-181
 CVE-2002-1156
-	TODO: check
+	- apache2 2.0.43
 CVE-2002-1154
-	TODO: check
+	- analog 2:5.23
 CVE-2002-1153
-	TODO: check
+	NOTE: not-for-us (IBM Websphere)
 CVE-2002-1152
-	TODO: check
+	- konqeror 3.03
 CVE-2002-1151
 	NOTE: covered by DSA-167
 CVE-2002-1148
 	NOTE: covered by DSA-170
 CVE-2002-1147
-	TODO: check
+	NOTE: not-for-us (HP Procurve 4000M Switch firmware)
 CVE-2002-1146
 	TODO: check
 CVE-2002-1142
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1141
-	TODO: check
+	NOTE: not-for-us (Sun Microsystems RPC library Services for Unix 3.0 Interix SD, as implemented on Microsoft Windows NT4, 2000, and XP)
 CVE-2002-1140
-	TODO: check
+	NOTE: not-for-us (Sun Microsystems RPC library Services for Unix 3.0 Interix SD, as implemented on Microsoft Windows NT4, 2000, and XP)
 CVE-2002-1139
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1138
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1137
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1135
-	TODO: check
+	NOTE: not-for-us (phpWebSite)
 CVE-2002-1132
 	NOTE: covered by DSA-191
 CVE-2002-1126
-	TODO: check
+	- mozilla 1.2
 CVE-2002-1123
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1122
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1119
 	NOTE: covered by DSA-159
 CVE-2002-1118
-	TODO: check
+	NOTE: not-for-us (Oracle)
 CVE-2002-1117
-	TODO: check
+	NOTE: not-for-us (Veritas Backup Exec)
 CVE-2002-1116
 	NOTE: covered by DSA-161
 CVE-2002-1113
@@ -822,55 +822,55 @@
 CVE-2002-1111
 	NOTE: covered by DSA-153
 CVE-2002-1109
-	TODO: check
+	NOTE: old amavis shell script
 CVE-2002-1108
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1107
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1106
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1105
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1104
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1102
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1099
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1098
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1097
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1096
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1095
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1093
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1092
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1091
-	TODO: check
+	- mozilla 1.0.2
 CVE-2002-1088
-	TODO: check
+	NOTE: not-for-us (Novell GroupWise)
 CVE-2002-1081
-	TODO: check
+	NOTE: not-for-us (Abyss Web Server)
 CVE-2002-1079
-	TODO: check
+	NOTE: not-for-us (Abyss Web Server)
 CVE-2002-1076
-	TODO: check
+	NOTE: not-for-us (Ipswitch IMail)
 CVE-2002-1060
-	TODO: check
+	NOTE: not-for-us (CacheFlow CacheOS)
 CVE-2002-1059
-	TODO: check
+	NOTE: not-for-us (Van Dyke SecureCRT SSH client)
 CVE-2002-1057
-	TODO: check
+	NOTE: not-for-us (SmartMax MailMax POP3 daemon)
 CVE-2002-1056
-	TODO: check
+	NOTE: not-for-us (Microsoft)
 CVE-2002-1054
-	TODO: check
+	NOTE: not-for-us (Pablo FTP server)
 CVE-2002-1053
-	TODO: check
+	NOTE: not-for-us (W3C Jigsaw Proxy Server)
 CVE-2002-1051
 	NOTE: covered by DSA-254
 CVE-2002-1050
@@ -878,43 +878,43 @@
 CVE-2002-1049
 	NOTE: covered by DSA-148
 CVE-2002-1046
-	TODO: check
+	NOTE: not-for-us (Watchguard Firebox firmware)
 CVE-2002-1039
-	TODO: check
+	- dcl 20020706
 CVE-2002-1035
-	TODO: check
+	NOTE: not-for-us (Omnicron OmniHTTPd)
 CVE-2002-1031
-	TODO: check
+	NOTE: not-for-us (KeyFocus (KF) web server)
 CVE-2002-1030
-	TODO: check
+	NOTE: not-for-us (BEA WebLogic Server and Express)
 CVE-2002-1025
-	TODO: check
+	NOTE: not-for-us (JRun)
 CVE-2002-1024
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-1015
-	TODO: check
+	NOTE: not-for-us (Real)
 CVE-2002-1014
-	TODO: check
+	NOTE: not-for-us (Real)
 CVE-2002-1013
-	TODO: check
+	NOTE: not-for-us (Inktomi)
 CVE-2002-1006
-	TODO: check
+	NOTE: not-for-us (Betsie)
 CVE-2002-1004
-	TODO: check
+	NOTE: not-for-us (ArGoSoft Mail Server)
 CVE-2002-1002
-	TODO: check
+	NOTE: not-for-us (Novell)
 CVE-2002-1000
-	TODO: check
+	NOTE: not-for-us (AnalogX SimpleServer:Shout)
 CVE-2002-0995
-	TODO: check
+	NOTE: not-for-us (PHPAuction)
 CVE-2002-0990
-	TODO: check
+	NOTE: not-for-us (Symantec)
 CVE-2002-0989
 	NOTE: covered by DSA-158
 CVE-2002-0988
-	TODO: check
+	NOTE: not-for-us (Xsco)
 CVE-2002-0987
-	TODO: check
+	NOTE: not-for-us (Xsco)
 CVE-2002-0986
 	NOTE: covered by DSA-168
 CVE-2002-0985
@@ -922,21 +922,21 @@
 CVE-2002-0984
 	NOTE: covered by DSA-156
 CVE-2002-0981
-	TODO: check
+	NOTE: not-for-us (ndcfg)
 CVE-2002-0974
-	TODO: check
+	NOTE: not-for-us (Help and Support Center for Windows XP)
 CVE-2002-0970
 	NOTE: covered by DSA-155
 CVE-2002-0969
-	TODO: check
+	NOTE: mysql problem only affects Windows
 CVE-2002-0968
-	TODO: check
+	NOTE: not-for-us (AnalogX SimpleServer:WWW)
 CVE-2002-0967
-	TODO: check
+	NOTE: not-for-us (eDonkey)
 CVE-2002-0965
-	TODO: check
+	NOTE: not-for-us (Oracle)
 CVE-2002-0964
-	TODO: check
+	NOTE: not-for-us (Half Life)
 CVE-2002-0958
 	TODO: check
 CVE-2002-0953