[Secure-testing-commits] r314 - sarge-checks/CAN

Joey Hess joeyh@costa.debian.org
Mon, 24 Jan 2005 00:00:03 +0100


Author: joeyh
Date: 2005-01-24 00:00:00 +0100 (Mon, 24 Jan 2005)
New Revision: 314

Modified:
   sarge-checks/CAN/list
Log:
update


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-01-22 08:14:16 UTC (rev 313)
+++ sarge-checks/CAN/list	2005-01-23 23:00:00 UTC (rev 314)
@@ -59,6 +59,7 @@
 	NOTE: reserved
 CAN-2005-0103
 	NOTE: reserved
+	- squirrelmail 2:1.4.4-1
 CAN-2005-0102
 	NOTE: reserved
 CAN-2005-0101
@@ -131,6 +132,7 @@
 	NOTE: reserved
 CAN-2005-0075
 	NOTE: reserved
+	- squirrelmail 2:1.4.4-1
 CAN-2005-0074
 	NOTE: reserved
 CAN-2005-0073
@@ -854,7 +856,7 @@
 CAN-2004-1121
 	NOTE: reserved
 CAN-2004-1120 (Mulitple buffer overflows in (1) http.c, (2) http-retr.c, (3) main.c ...)
-	- prozilla (unfixed; bug #284117)
+	- prozilla 1:1.3.7.3-1
 CAN-2004-1119 (Stack-based buffer overflow in IN_CDDA.dll in Winamp 5.05, and ...)
 	NOTE: not-for-us (Winamp)
 CAN-2004-1118 (Buffer overflow in the WodFtpDLX.ocx (WeOnlyDo!) ActiveX component ...)
@@ -4373,7 +4375,7 @@
 CAN-2003-0466 (Off-by-one error in the fb_realpath() function, as derived from the ...)
 	{DSA-357}
 CAN-2003-0465 strncpy in kernel does not pad with zeroes
-	- kernel-source-2.4.27 (unfixed; bug #280492; only mips and alpha unfixed)
+	- kernel-source-2.4.27 (unfixed [mips, alpha]; bug #280492)
 	NOTE: generic .c version fixed in 2.6.x but not in 2.4.x
 	NOTE: arch specific asm versions: 
 	NOTE: x86 is not affected