[Secure-testing-commits] r141 - sarge-checks/CVE

Stefan Fritsch stef-guest@haydn.debian.org
Sun, 21 Nov 2004 15:20:49 -0700


Author: stef-guest
Date: 2004-11-21 15:20:44 -0700 (Sun, 21 Nov 2004)
New Revision: 141

Modified:
   sarge-checks/CVE/list
Log:
checked some CVEs

Modified: sarge-checks/CVE/list
===================================================================
--- sarge-checks/CVE/list	2004-11-21 21:31:06 UTC (rev 140)
+++ sarge-checks/CVE/list	2004-11-21 22:20:44 UTC (rev 141)
@@ -1006,70 +1006,66 @@
 	NOTE: not-for-us (Cisco)
 CVE-2002-0851
 	- isdnutils 3.2
-
-begin claimed by stef-guest
-
 CVE-2002-0850
-	TODO: check
+	NOTE: not-for-us (PGP corporate desktop)
 CVE-2002-0848
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-0847
 	NOTE: covered by DSA-145
 CVE-2002-0846
-	TODO: check
+	- flashplugin-nonfree 6.0.47
 CVE-2002-0845
-	TODO: check
+	NOTE: not-for-us (Sun ONE)
 CVE-2002-0844
-	TODO: check
+	- cvs 1:1.11.2
 CVE-2002-0842
-	TODO: check
+	NOTE: mod_dav for apache not vulnerable according to
+	NOTE: lists.netsys.com/pipermail/full-disclosure/2003-February/003875.html
 CVE-2002-0840
 	NOTE: covered by DSA-187
 CVE-2002-0836
 	NOTE: covered by DSA-207
 CVE-2002-0835
-	TODO: check
+	NOTE: not-for-us (RedHat/Intel PXE daemon)
+	NOTE: this is not the one in Debian
 CVE-2002-0831
-	TODO: check
+	NOTE: not-for-us (FreeBSD)
 CVE-2002-0830
-	TODO: check
+	NOTE: not-for-us (BSD/NFS)
 CVE-2002-0829
-	TODO: check
+	NOTE: not-for-us (FreeBSD)
 CVE-2002-0826
-	TODO: check
+	NOTE: not-for-us (WS FTP server)
 CVE-2002-0824
-	TODO: check
+	NOTE: not-for-us (BSD/pppd)
 CVE-2002-0823
-	TODO: check
+	NOTE: not-for-us (Windows)
 CVE-2002-0818
 	NOTE: covered by DSA-144
 CVE-2002-0817
 	NOTE: covered by DSA-139
 CVE-2002-0816
-	TODO: check
+	NOTE: not-for-us (HP Tru64)
 CVE-2002-0814
-	TODO: check
+	NOTE: not-for-us (VMware)
 CVE-2002-0813
-	TODO: check
+	NOTE: not-for-us (Cisco)
 CVE-2002-0810
-	TODO: check
+	- bugzilla 2.16.0
 CVE-2002-0809
-	TODO: check
+	- bugzilla 2.16.0
 CVE-2002-0808
-	TODO: check
+	- bugzilla 2.16.0
 CVE-2002-0806
-	TODO: check
+	- bugzilla 2.16.0
 CVE-2002-0805
-	TODO: check
+	- bugzilla 2.16.0
 CVE-2002-0804
-	TODO: check
+	- bugzilla 2.16.0
 CVE-2002-0802
-	TODO: check
+	- postgresql 7.2
 CVE-2002-0801
-	TODO: check
-
-end claimed by stef-guest
-
+	NOTE: not-for-us (Macromedia / Windows)
 CVE-2002-0795
 	TODO: check
 CVE-2002-0794