[Secure-testing-commits] r806 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Wed, 13 Apr 2005 22:23:30 +0000


Author: jmm-guest
Date: 2005-04-13 22:23:26 +0000 (Wed, 13 Apr 2005)
New Revision: 806

Modified:
   sarge-checks/CAN/list
Log:
kernel DoS bugreport filed.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-04-13 22:16:19 UTC (rev 805)
+++ sarge-checks/CAN/list	2005-04-13 22:23:26 UTC (rev 806)
@@ -93,7 +93,7 @@
 CAN-2005-1052 (Microsoft Outlook 2003 and Outlook Web Access (OWA) 2003 do not ...)
 	NOTE: not-for-us (Microsoft)
 CAN-2005-1051 (SQL injection vulnerability in profile.php in PunBB 1.2.4 allows ...)
-	TODO: check
+	NOTE: not-for-us (PunBB)
 CAN-2005-1050 (The modload op in the Reviews module for PostNuke 0.760-RC3 allows ...)
 	NOTE: not-for-us (PostNuke)
 CAN-2005-1049 (Multiple cross-site scripting vulnerabilities in PostNuke 0.760-RC3 ...)
@@ -112,8 +112,9 @@
 	- php4 (unfixed)
 CAN-2005-1042 (Integer overflow in the exif_process_IFD_TAG function in exif.c in PHP ...)
 	- php4 (unfixed)
-CAN-2005-1041 (The fib_seq_start function in fib_hash.c in Linux kernel allows local ...)
-	TODO: check
+CAN-2005-1041 (The fib_seq_start function in fib_haseh.c in Linux kernel allows local ...)
+	TODO: Check for 2.4.27
+	- kernel-source-2.6.8 (unfixed; bug pending)
 CAN-2005-1040 (Multiple unknown vulnerabilities in netapplet in Novell Linux Desktop ...)
 	TODO: check
 CAN-2005-1039 (Race condition in Core Utilities (coreutils) 5.2.1, when (1) mkdir, ...)