[Secure-testing-commits] r349 - sarge-checks/CAN

Joey Hess joeyh@costa.debian.org
Sat, 05 Feb 2005 15:53:25 +0100


Author: joeyh
Date: 2005-02-05 15:53:23 +0100 (Sat, 05 Feb 2005)
New Revision: 349

Modified:
   sarge-checks/CAN/list
Log:
updatelist does bad things if the DSA is older than any on our list.
replace with a note for now


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-02-05 08:14:16 UTC (rev 348)
+++ sarge-checks/CAN/list	2005-02-05 14:53:23 UTC (rev 349)
@@ -1129,7 +1129,7 @@
 	- kernel-image-2.4.27-ia64 2.4.27-6
 	- kernel-patch-2.4.27-mips 2.4.27-8.040815-1
 	- kernel-patch-powerpc-2.4.27 (unfixed)
-	- kernel-image-2.4.27-sparc 2.4.27-2
+	- kernel-image-2.4.27-sparc (unfixed)
 	NOTE: above should cover 2.4
 	- kernel-source-2.6.8 2.6.8-11
 	NOTE: and the binaries built from it
@@ -6362,7 +6362,7 @@
 CAN-2002-0913 (Format string vulnerability in log_doit function of Slurp NNTP client ...)
 	NOTE: not-for-us (Slurp NNTP not in Debian)
 CAN-2002-0912 (in.uucpd UUCP server in Debian GNU/Linux 2.2, and possibly other ...)
-	TODO: check
+	NOTE: DSA-129
 CAN-2002-0910 (Buffer overflows in netstd 3.07-17 package allows remote DNS servers ...)
 	NOTE: not-for-us (netstd not in Debian anymore)
 CAN-2002-0909 (Multiple buffer overflows in mnews 1.22 and earlier allow (1) a remote ...)