[Secure-testing-commits] r499 - sarge-checks/CAN

Stefan Fritsch stef-guest@costa.debian.org
Sun, 27 Feb 2005 23:20:00 +0100


Author: stef-guest
Date: 2005-02-27 23:19:57 +0100 (Sun, 27 Feb 2005)
New Revision: 499

Modified:
   sarge-checks/CAN/list
Log:
check some CANs

Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-02-27 08:14:31 UTC (rev 498)
+++ sarge-checks/CAN/list	2005-02-27 22:19:57 UTC (rev 499)
@@ -149,25 +149,28 @@
 CAN-2005-0543 (Cross-site scripting (XSS) vulnerability phpMyAdmin 2.6.1 allows ...)
 	TODO: check
 CAN-2005-0542 (saveUser.do in Cyclades AlterPath Manager (APM) Console Server 1.2.1 ...)
-	TODO: check
+	NOTE: not-for-us (Cyclades AlterPath Manager)
 CAN-2005-0541 (consoleConnect.jsp in Cyclades AlterPath Manager (APM) Console Server ...)
-	TODO: check
+	NOTE: not-for-us (Cyclades AlterPath Manager)
 CAN-2005-0540 (Cyclades AlterPath Manager (APM) Console Server 1.2.1 allows remote ...)
-	TODO: check
+	NOTE: not-for-us (Cyclades AlterPath Manager)
 CAN-2005-0539 (Unknown vulnerability in IBM Hardware Management Console (HMC) before ...)
-	TODO: check
+	NOTE: not-for-us (IBM)
 CAN-2005-0538 (Directory traversal vulnerability in (1) GinpPictureServlet.java and ...)
 	TODO: check
 CAN-2005-0537 (Multiple SQL injection vulnerabilities in page.php for iGeneric (iG) ...)
-	TODO: check
+	NOTE: not-for-us (iGeneric (iG) Shop)
 CAN-2005-0536 (Directory traversal vulnerability in MediaWiki 1.3.x before 1.3.11 and ...)
-	TODO: check
+	NOTE: not-for-us (MediaWiki not yet in Debian)
+	TODO: track ITP: #217571
 CAN-2005-0535 (Cross-site request forgery (CSRF) vulnerability in MediaWiki 1.3.x ...)
-	TODO: check
+	NOTE: not-for-us (MediaWiki not yet in Debian)
+	TODO: track ITP: #217571
 CAN-2005-0534 (Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.x ...)
-	TODO: check
+	NOTE: not-for-us: (MediaWiki not yet in Debian)
+	TODO: track ITP: #217571
 CAN-2005-0533 (Heap-based buffer overflow in Trend Micro AntiVirus Library VSAPI ...)
-	TODO: check
+	NOTE: not-for-us (Trend Micro AntiVirus)
 CAN-2005-0532 (The reiserfs_copy_from_user_to_file_region function in reiserfs/file.c ...)
 	- kernel-source-2.6.8 (unfixed; bug #296897)
 	TODO: watch 2.6.10 if it gets into sarge