[Secure-testing-commits] r246 - sarge-checks/CAN

Joey Hess joeyh@costa.debian.org
Thu, 06 Jan 2005 09:14:21 +0100


Author: joeyh
Date: 2005-01-06 09:14:18 +0100 (Thu, 06 Jan 2005)
New Revision: 246

Modified:
   sarge-checks/CAN/list
Log:
automatic CAN database update

Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-01-05 12:39:26 UTC (rev 245)
+++ sarge-checks/CAN/list	2005-01-06 08:14:18 UTC (rev 246)
@@ -1,3 +1,111 @@
+CAN-2005-0032
+	NOTE: reserved
+CAN-2005-0031
+	NOTE: reserved
+CAN-2005-0030
+	NOTE: reserved
+CAN-2005-0029
+	NOTE: reserved
+CAN-2005-0028
+	NOTE: reserved
+CAN-2005-0027
+	NOTE: reserved
+CAN-2005-0026
+	NOTE: reserved
+CAN-2005-0025
+	NOTE: reserved
+CAN-2005-0024
+	NOTE: reserved
+CAN-2005-0023
+	NOTE: reserved
+CAN-2005-0022
+	TODO: check
+CAN-2005-0021
+	TODO: check
+CAN-2005-0020
+	NOTE: reserved
+CAN-2005-0019
+	NOTE: reserved
+CAN-2005-0018
+	NOTE: reserved
+CAN-2005-0017
+	NOTE: reserved
+CAN-2005-0016
+	NOTE: reserved
+CAN-2005-0015
+	NOTE: reserved
+CAN-2005-0014
+	NOTE: reserved
+CAN-2005-0013
+	NOTE: reserved
+CAN-2005-0012
+	NOTE: reserved
+CAN-2005-0011
+	NOTE: reserved
+CAN-2005-0010
+	NOTE: reserved
+CAN-2005-0009
+	NOTE: reserved
+CAN-2005-0008
+	NOTE: reserved
+CAN-2005-0007
+	NOTE: reserved
+CAN-2005-0006
+	NOTE: reserved
+CAN-2005-0005
+	NOTE: reserved
+CAN-2005-0004
+	NOTE: reserved
+CAN-2005-0003
+	NOTE: reserved
+CAN-2005-0002
+	NOTE: reserved
+CAN-2005-0001
+	NOTE: reserved
+CAN-2004-1339
+	TODO: check
+CAN-2004-1338
+	TODO: check
+CAN-2004-1337
+	TODO: check
+CAN-2004-1336
+	TODO: check
+CAN-2004-1335
+	TODO: check
+CAN-2004-1334
+	TODO: check
+CAN-2004-1333
+	TODO: check
+CAN-2004-1332
+	TODO: check
+CAN-2004-1331
+	TODO: check
+CAN-2004-1330
+	TODO: check
+CAN-2004-1329
+	TODO: check
+CAN-2004-1328
+	TODO: check
+CAN-2004-1327
+	TODO: check
+CAN-2004-1326
+	TODO: check
+CAN-2004-1325
+	TODO: check
+CAN-2004-1324
+	TODO: check
+CAN-2004-1323
+	TODO: check
+CAN-2004-1322
+	TODO: check
+CAN-2004-1321
+	TODO: check
+CAN-2004-1320
+	TODO: check
+CAN-2004-1319
+	TODO: check
+CAN-2004-1318
+	TODO: check
 CAN-2004-1317 (Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, ...)
 	NOTE: apparently only affects netcat in windows
 CAN-2004-1316 (Heap-based buffer overflow in MSG_UnEscapeSearchUrl in ...)
@@ -8,8 +116,8 @@
 	NOTE: not-for-us (MacOS)
 CAN-2004-1313 (The Smc.exe process in My Firewall Plus 5.0 build 1117, and possibly ...)
 	NOTE: not-for-us (My Firewall Plus)
-CAN-2004-1312
-	NOTE: reserved
+CAN-2004-1312 (A bug in the HTML parser in a certain Microsoft HTML library, as used ...)
+	TODO: check
 CAN-2004-1311 (Integer overflow in the real_setup_and_get_header function in real.c ...)
 	NOTE: not-for-us (mplayer)
 CAN-2004-1310 (Stack-based buffer overflow in the asf_mmst_streaming.c functionality ...)
@@ -24,8 +132,8 @@
 	NOTE: reserved
 CAN-2004-1306
 	NOTE: reserved
-CAN-2004-1305
-	NOTE: reserved
+CAN-2004-1305 (The Windows Animated Cursor (ANI) in Windows NT, Windows 2000 through ...)
+	TODO: check
 CAN-2004-1304 (Stack-based buffer overflow in the ELF header parsing code in file ...)
 	- file 4.12
 CAN-2004-1303 (Buffer overflow in the get function in get.c for Yanf 0.4 allows ...)
@@ -166,8 +274,8 @@
 	NOTE: reserved
 CAN-2004-1237
 	NOTE: reserved
-CAN-2004-1236
-	NOTE: reserved
+CAN-2004-1236 (Buffer overflow in the LDAP component for Netscape Directory Server ...)
+	TODO: check
 CAN-2004-1235
 	NOTE: reserved
 CAN-2004-1234 (load_elf_binary in Linux before 2.4.26 allows local users to cause a ...)
@@ -374,7 +482,7 @@
 	TODO: check
 CAN-2004-1139 (Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 ...)
 	TODO: check
-CAN-2004-1138 (Unknown vulnerability in Vim modeline options, such as (1) termcap, ...)
+CAN-2004-1138 (VIM before 6.3 and gVim before 6.3 allow local users to execute ...)
 	- vim 1:6.3-046+0sarge1
 CAN-2004-1137 (Multiple vulnerabilities in the IGMP functionality for Linux kernel ...)
 	- kernel-image-2.4.27-i386 2.4.27-7
@@ -658,6 +766,7 @@
 	NOTE: cyrus-imapd not vulnerable
 	NOTE: cyrus21-imapd not vulnetale
 CAN-2004-1010 (Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when ...)
+	{DSA-624-1}
 	- zip 2.30-8
 CAN-2004-1009
 	NOTE: reserved
@@ -802,7 +911,7 @@
 	NOTE: dup of CAN-2004-0599
 CAN-2004-0954
 	NOTE: rejected
-CAN-2004-0953 (Buffer overflow in the C2S module in Jabber 2.x server (Jabberd) ...)
+CAN-2004-0953 (Buffer overflow in the C2S module in the open source Jabber 2.x server ...)
 	NOTE: jabber version 2 is vulnerable, we have an older version that seems not
 CAN-2004-0952
 	NOTE: reserved
@@ -931,7 +1040,7 @@
 	- mozilla-firefox 0.10.1+1.0PR
 	- mozilla 1.7.3
 	- mozilla-thunderbird 0.8
-CAN-2004-0901 (Microsoft Word for Windows 6.0 Converter does not properly validate ...)
+CAN-2004-0901 (Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in ...)
 	NOTE: not-for-us (Microsoft)
 CAN-2004-0900 (The DHCP Server service for Microsoft Windows NT 4.0 Server and ...)
 	NOTE: not-for-us (Microsoft)