[Secure-testing-commits] r772 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Wed, 06 Apr 2005 21:35:59 +0000


Author: jmm-guest
Date: 2005-04-06 21:35:56 +0000 (Wed, 06 Apr 2005)
New Revision: 772

Modified:
   sarge-checks/CAN/list
Log:
axel buffer overflow
php3 backports


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-04-06 19:16:09 UTC (rev 771)
+++ sarge-checks/CAN/list	2005-04-06 21:35:56 UTC (rev 772)
@@ -1366,7 +1366,9 @@
 	NOTE: not-for-us (PBLang)
 CAN-2005-0525 [PHP DoS vulnerability in JPEG header parsing]
 	- php4 4:4.3.10-10
+	- php3 3.0.18-31
 CAN-2005-0524 [PHP DoS vulnerability in IFF header parsing]
+	NOTE: php3 not affected
 	- php4 4:4.3.10-10
 CAN-2005-0523 (Format string vulnerability in ProZilla 1.3.7.3 and earlier allows ...)
 	- prozilla 1:1.3.7.4-1
@@ -2102,8 +2104,9 @@
 	NOTE: reserved
 CAN-2005-0391
 	NOTE: reserved
-CAN-2005-0390
+CAN-2005-0390 [axel buffer overflow in HTTP redirection handling in conn.c]
 	NOTE: reserved
+	- 1.0b-1
 CAN-2005-0389
 	NOTE: rejected
 	- lsh-utils 2.0-1