[Secure-testing-commits] r147 - sarge-checks/CVE

SALVETTI Djoum?? djoume-guest@haydn.debian.org
Mon, 22 Nov 2004 13:22:32 -0700


Author: djoume-guest
Date: 2004-11-22 13:22:17 -0700 (Mon, 22 Nov 2004)
New Revision: 147

Modified:
   sarge-checks/CVE/list
Log:
* finish processed CVEs! 


Modified: sarge-checks/CVE/list
===================================================================
--- sarge-checks/CVE/list	2004-11-22 18:58:55 UTC (rev 146)
+++ sarge-checks/CVE/list	2004-11-22 20:22:17 UTC (rev 147)
@@ -561,7 +561,7 @@
 	NOTE: according to bug #178102 a fixed package was uploaded to the security team in January 2003
 	NOTE: but no advisory (nor fixed package) have been published yet.
 	NOTE: I've mailed maintainer Luca Filipozzi <lfilipoz@debian.org> about this.
-	TODO: check
+	NOTE: No response from maintainer, I have mailed security team.
 CVE-2002-1375
 	- mysql-dfsg 4.0.7.gamma-1
 	NOTE: covered by DSA-212
@@ -1161,11 +1161,13 @@
 	NOTE: not-for-us (sendform.cgi)
 CVE-2002-0704
 	NOTE: kernel netfilter bug, not in user space
+	NOTE: this is fixed in kernel 2.4.20
 	TODO: check
 CVE-2002-0703
-	TODO: check
+	- perl 5.8.0-7
+	NOTE: woody seems to be vulnerable, bug filed.
 CVE-2002-0701
-	TODO: check
+	NOTE: not-for-us (BSD)
 CVE-2002-0700
 	NOTE: not-for-us (Microsoft)
 CVE-2002-0698