[Secure-testing-commits] r781 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Sat, 09 Apr 2005 10:21:09 +0000


Author: jmm-guest
Date: 2005-04-09 10:21:05 +0000 (Sat, 09 Apr 2005)
New Revision: 781

Modified:
   sarge-checks/CAN/list
Log:
Both Mozillae are vulnerable to the replace() lambda memory leak.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-04-09 10:09:12 UTC (rev 780)
+++ sarge-checks/CAN/list	2005-04-09 10:21:05 UTC (rev 781)
@@ -55,7 +55,8 @@
 CAN-2005-0990 (unshar (unshar.c) in sharutils 4.2.1 allows local users to overwrite ...)
 	- sharutils 4.2.1-13
 CAN-2005-0989 (The Javascript engine in Mozilla Suite 1.7.6 and Firefox 1.0.1 and ...)
-	TODO: check
+	- mozilla (unfixed; pending)
+	- mozilla-firefox (unfixed; pending)
 CAN-2005-0988 (Race condition in gzip 1.2.4, 1.3.3, and earlier when decompressing a ...)
 	TODO: check
 	NOTE: Essentially the same as CAN-2005-0953