[Secure-testing-commits] r479 - sarge-checks/CAN

Joey Hess joeyh@costa.debian.org
Thu, 24 Feb 2005 04:37:08 +0100


Author: joeyh
Date: 2005-02-24 04:37:05 +0100 (Thu, 24 Feb 2005)
New Revision: 479

Modified:
   sarge-checks/CAN/list
Log:
verified curl is vulnerable to CAN-2005-0490 still; linked to bug


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-02-24 02:49:17 UTC (rev 478)
+++ sarge-checks/CAN/list	2005-02-24 03:37:05 UTC (rev 479)
@@ -41,7 +41,7 @@
 CAN-2005-0491 (Stack-based buffer overflow in Knox Arkeia Server Backup 5.3.x allows ...)
 	NOTE: not-for-us (Arkeia Server Backup)
 CAN-2005-0490 (Multiple stack-based buffer overflows in libcURL and cURL 7.12.1, and ...)
-	- curl 7.12.3-1
+	- curl (unfixed; bug #296678)
 CAN-2005-0489
 	NOTE: reserved
 CAN-2004-1702 (The AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to ...)