[Secure-testing-commits] r1598 - data/CAN

Moritz Muehlenhoff jmm-guest at costa.debian.org
Tue Aug 16 10:52:05 UTC 2005


Author: jmm-guest
Date: 2005-08-16 10:52:02 +0000 (Tue, 16 Aug 2005)
New Revision: 1598

Modified:
   data/CAN/list
Log:
bug# for bluez
php4 affected by current xmlrpc issue


Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-08-16 09:42:02 UTC (rev 1597)
+++ data/CAN/list	2005-08-16 10:52:02 UTC (rev 1598)
@@ -11,7 +11,7 @@
 CAN-2005-2549 (Multiple format string vulnerabilities in Evolution 1.5 through ...)
 	- evolution (unfixed; bug #322535; high)
 CAN-2005-2547 (security.c in hcid for BlueZ 2.18 and earlier allows remote attackers ...)
-	- bluez-utils (unfixed; bug filed; medium)
+	- bluez-utils (unfixed; bug #323365; medium)
 CAN-2005-XXXX [centericq embeds libgadu, which had multiple vulns]
 	NOTE: Will be split once the maintainer has investigated this
 	- centericq (unfixed; bug #323185; medium)
@@ -121,9 +121,10 @@
 	NOTE: reserved
 	- drupal (unfixed; bug #323347; high)
 	- phpgroupware (unfixed; bug #323349; high)
-	- egroupware (unfixe; bug #323350; high)
+	- egroupware (unfixed; bug #323350; high)
 	TODO: phpwiki has disabled the XMLRPC in the last upload, it orphaned as well, should be fixed anyway
-	TODO: check php4 and php5 (I guess both are affected)
+	- php4 (unfixed; bug #323366; high)
+	TODO: check php5
 CAN-2005-2497
 	NOTE: reserved
 CAN-2005-2496




More information about the Secure-testing-commits mailing list