[Secure-testing-commits] r732 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Sun, 03 Apr 2005 16:08:01 +0000


Author: jmm-guest
Date: 2005-04-03 16:07:58 +0000 (Sun, 03 Apr 2005)
New Revision: 732

Modified:
   sarge-checks/CAN/list
Log:
PHP4 DoS is already fixed in the -10 packages, which upgraded
to a CVS snapshot, that contains the necessary fixes.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-04-03 14:14:05 UTC (rev 731)
+++ sarge-checks/CAN/list	2005-04-03 16:07:58 UTC (rev 732)
@@ -1300,10 +1300,10 @@
 	NOTE: not-for-us (PBLang)
 CAN-2005-0525 [PHP DoS vulnerability in JPEG header parsing]
 	NOTE: reserved
-	- php4 (unfixed; bug #302701)
+	- php4 4:4.3.10-10
 CAN-2005-0524 [PHP DoS vulnerability in IFF header parsing]
 	NOTE: reserved
-	- php4 (unfixed; bug #302702)
+	- php4 4:4.3.10-10
 CAN-2005-0523 (Format string vulnerability in ProZilla 1.3.7.3 and earlier allows ...)
 	- prozilla 1:1.3.7.4-1
 CAN-2005-0522 (Chat Anywhere 2.72a stores sensitive information such as passwords in ...)