[Secure-testing-commits] r45 - sarge-checks/CVE

Wartan Hachaturow wart@haydn.debian.org
Sat, 30 Oct 2004 13:40:36 -0600


Author: wart
Date: 2004-10-30 13:40:33 -0600 (Sat, 30 Oct 2004)
New Revision: 45

Modified:
   sarge-checks/CVE/list
Log:
First pass. not-for-us'es and points to test.


Modified: sarge-checks/CVE/list
===================================================================
--- sarge-checks/CVE/list	2004-10-30 13:33:09 UTC (rev 44)
+++ sarge-checks/CVE/list	2004-10-30 19:40:33 UTC (rev 45)
@@ -1,45 +1,50 @@
 begin claimed by wart
 
 CVE-2004-0356
-	TODO: unchecked
+	NOTE: not-for-us (windows mta)
 CVE-2004-0347
-	TODO: unchecked
+	NOTE: not-for-us (juniper router)
 CVE-2004-0336
-	TODO: unchecked
+	NOTE: not-for-us (windows mta)
 CVE-2004-0320
-	TODO: unchecked
+	NOTE: not-for-us (ncipher hardware)
 CVE-2004-0309
-	TODO: unchecked
+	NOTE: not-for-us (windows firewall)
 CVE-2004-0307
-	TODO: unchecked
+	NOTE: not-for-us (cisco)
 CVE-2004-0306
-	TODO: unchecked
+	NOTE: not-for-us (cisco)
 CVE-2004-0297
-	TODO: unchecked
+	NOTE: not-for-us (windows mta)
 CVE-2004-0276
-	TODO: unchecked
+	NOTE: not-for-us (monkeyd, not in debian)
 CVE-2004-0274
-	TODO: unchecked
+	eggdrop 1.6.17
+	TODO: test
 CVE-2004-0273
-	TODO: unchecked
+	NOTE: not-for-us (realone player)
 CVE-2004-0270
-	TODO: unchecked
+	libclamav1 0.75.1
+	TODO: test
 CVE-2004-0263
-	TODO: unchecked
+	libapache-mod-php4 4.3.9
+	TODO: test
 CVE-2004-0261
-	TODO: unchecked
+	NOTE: not-for-us (openjournal, not in debian)
 CVE-2004-0257
-	TODO: unchecked
+	NOTE: not-for-us (open/netbsd)
 CVE-2004-0256
-	TODO: unchecked
+	libtool-1.5.6
+	TODO: test
 CVE-2004-0194
-	TODO: unchecked
+	NOTE: not-for-us (acroread)
 CVE-2004-0193
-	TODO: unchecked
+	NOTE: not-for-us (realsecure/blackice)
 CVE-2004-0191
-	TODO: unchecked
+	mozilla-browser-1.7.3
+	TODO: test
 CVE-2004-0190
-	TODO: unchecked
+	NOTE: not-for-us (symantec)
 CVE-2004-0189
 	NOTE: covered by DSA-474
 CVE-2004-0188
@@ -47,17 +52,18 @@
 CVE-2004-0186
 	NOTE: covered by DSA-463
 CVE-2004-0185
-	TODO: unchecked
+	wu-ftpd-2.6.2-17.2
+	TODO: test
 CVE-2004-0173
-	TODO: unchecked
+	NOTE: not-for-us (apache/cygwin)
 CVE-2004-0171
-	TODO: unchecked
+	NOTE: not-for-us (freebsd/os x)
 CVE-2004-0169
-	TODO: unchecked
+	NOTE: not-for-us (os x)
 CVE-2004-0167
-	TODO: unchecked
+	NOTE: not-for-us (os x)
 CVE-2004-0165
-	TODO: unchecked
+	NOTE: not-for-us (os x)
 CVE-2004-0160
 	NOTE: covered by DSA-446
 CVE-2004-0159
@@ -65,75 +71,83 @@
 CVE-2004-0150
 	NOTE: covered by DSA-458
 CVE-2004-0148
-	TODO: unchecked
+	wu-ftpd-2.6.2-17.2
+	TODO: test
 CVE-2004-0131
-	TODO: unchecked
+	NOTE: not-for-us (gnu radiusd, not in debian)
 CVE-2004-0129
-	TODO: unchecked
+	phpmyadmin-2.6.0-pl2
+	TODO: test
 CVE-2004-0128
-	TODO: unchecked
+	NOTE: not-for-us (phpgedview, not in debian)
 CVE-2004-0126
-	TODO: unchecked
+	NOTE: not-for-us (freebsd)
 CVE-2004-0122
-	TODO: unchecked
+	NOTE: not-for-us (microsoft)
 CVE-2004-0121
-	TODO: unchecked
+	NOTE: not-for-us (microsoft)
 CVE-2004-0115
-	TODO: unchecked
+	NOTE: not-for-us (microsoft)
 CVE-2004-0114
-	TODO: unchecked
+	NOTE: not-for-us (bsd)
 CVE-2004-0113
-	TODO: unchecked
+	apache2-2.0.52
+	TODO: test
 CVE-2004-0111
 	NOTE: covered by DSA-464
 CVE-2004-0108
 	NOTE: covered by DSA-460
 CVE-2004-0099
-	TODO: unchecked
+	NOTE: not-for-us (freebsd)
 CVE-2004-0096
-	TODO: unchecked
+	libapache-mod-python-2:2.7.10
+	TODO: test
 CVE-2004-0095
-	TODO: unchecked
+	NOTE: not-for-us (mcafee)
 CVE-2004-0094
 	NOTE: covered by DSA-443
 CVE-2004-0093
 	NOTE: covered by DSA-443
 CVE-2004-0089
-	TODO: unchecked
+	NOTE: not-for-us (os x)
 CVE-2004-0082
-	TODO: unchecked
+	samba-3.0.7
+	TODO: test
 CVE-2004-0080
-	TODO: unchecked
+	NOTE: not-for-us (debian uses different login)
 CVE-2004-0078
-	TODO: unchecked
+	mutt-1.5.6-20040722+1
+	TODO: test
 CVE-2004-0077
 	NOTE: covered by DSA-438
 CVE-2004-0075
-	TODO: unchecked
+	kernel-source-2.4.24-2.4.24-3
+	TODO: test
 CVE-2004-0070
-	TODO: unchecked
+	NOTE: not-for-us (ezcontents, commercial)
 CVE-2004-0068
-	TODO: unchecked
+	NOTE: not-for-us (phpdig, not in debian)
 CVE-2004-0063
-	TODO: unchecked
+	NOTE: not-for-us (ncipher hsm)
 CVE-2004-0049
-	TODO: unchecked
+	NOTE: not-for-us (real helix)
 CVE-2004-0045
-	TODO: unchecked
+	inn2-2.4.1+20040820
+	TODO: test
 CVE-2004-0044
-	TODO: unchecked
+	NOTE: not-for-us (cisco)
 CVE-2004-0040
-	TODO: unchecked
+	NOTE: not-for-us (checkpoint)
 CVE-2004-0036
-	TODO: unchecked
+	NOTE: not-for-us (vbulletin, commercial)
 CVE-2004-0035
-	TODO: unchecked
+	NOTE: not-for-us (phorum, not in debian)
 CVE-2004-0033
-	TODO: unchecked
+	NOTE: not-for-us (phpgedview, not in debian)
 CVE-2004-0032
-	TODO: unchecked
+	NOTE: not-for-us (phpgedview, not in debian)
 CVE-2004-0031
-	TODO: unchecked
+	NOTE: not-for-us (phpgedview, not in debian)
 CVE-2004-0028
 	NOTE: covered by DSA-420
 CVE-2004-0016
@@ -145,11 +159,13 @@
 CVE-2004-0011
 	NOTE: covered by DSA-416
 CVE-2004-0009
-	TODO: unchecked
+	apache-ssl-1.3.31
+	TODO: test
 CVE-2004-0004
-	TODO: unchecked
+	NOTE: not-for-us (openca, not in debian)
 CVE-2004-0001
-	TODO: unchecked
+	kernel-image-2.6.8-9-amd64-generic
+	TODO: test?
 
 end claimed by wart