[Secure-testing-commits] r842 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Mon, 18 Apr 2005 11:22:32 +0000


Author: jmm-guest
Date: 2005-04-18 11:22:29 +0000 (Mon, 18 Apr 2005)
New Revision: 842

Modified:
   sarge-checks/CAN/list
Log:
grip CDDB update

M    sarge-checks/CAN/list


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-04-18 09:14:18 UTC (rev 841)
+++ sarge-checks/CAN/list	2005-04-18 11:22:29 UTC (rev 842)
@@ -1223,9 +1223,11 @@
 CAN-2005-0707 (Buffer overflow in the IMAP daemon (IMAP4d32.exe) for Ipswitch ...)
 	NOTE: not-for-us (Ipswitch Collaboration Suite)
 CAN-2005-0706 (Buffer overflow in discdb.c for grip 3.1.2 allows attackers to cause a ...)
+	NOTE: gnome-vfs2 is only vulnerable in stable (1.9) and experimental (2.10), but not
+	NOTE: in the Sarge version which does not install the module with the vulnerable code
 	- grip 3.2.0-4
 	- libcdaudio (unfixed; bug #304799)
-	- gnome-vfs2 (unfixed; bug #305072)
+	- gnome-vfs (unfixed; bug #305163)
 CAN-2005-0705 (The GPRS-LLC dissector in Ethereal 0.10.7 through 0.10.9, with the ...)
 	- ethereal 0.10.10-1
 CAN-2005-0704 (Buffer overflow in the Etheric dissector in Ethereal 0.10.7 through ...)