[Secure-testing-commits] r396 - sarge-checks/CAN

Joey Hess joeyh@costa.debian.org
Fri, 11 Feb 2005 21:14:19 +0100


Author: joeyh
Date: 2005-02-11 21:14:16 +0100 (Fri, 11 Feb 2005)
New Revision: 396

Modified:
   sarge-checks/CAN/list
Log:
automatic CAN database update

Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-02-11 18:21:45 UTC (rev 395)
+++ sarge-checks/CAN/list	2005-02-11 20:14:16 UTC (rev 396)
@@ -1,3 +1,5 @@
+CAN-2005-0284 (SQL injection vulnerability in addentry.php in Woltlab Burning Book ...)
+	TODO: check
 CAN-2005-0348 (Directory traversal vulnerability in RealArcade 1.2.0.994 allows ...)
 	NOTE: not-for-us (RealArcade)
 CAN-2005-0347 (Integer overflow in RealArcade 1.2.0.994 and earlier allows remote ...)
@@ -687,8 +689,10 @@
 	- squirrelmail 2:1.4.4-1
 CAN-2005-0074
 	NOTE: reserved
+	{DSA-676-1}
 CAN-2005-0073
 	NOTE: reserved
+	{DSA-677-1}
 CAN-2005-0072 (zhcon before 0.2 does not drop privileges before reading a user ...)
 	{DSA-655-1}
 CAN-2005-0071 (vdr before 1.2.6 does not securely create files, which allows ...)
@@ -1284,6 +1288,7 @@
 	NOTE: htmlheadline not in unstable
 CAN-2004-1180
 	NOTE: reserved
+	{DSA-678-1}
 CAN-2004-1179 (The debstd script in debmake 3.6.x before 3.6.10 and 3.7.x before ...)
 	{DSA-615-1}
 CAN-2004-1178