[Secure-testing-commits] r1345 - data/CAN

Joey Hess joeyh@costa.debian.org
Wed, 06 Jul 2005 21:14:16 +0000


Author: joeyh
Date: 2005-07-06 21:14:13 +0000 (Wed, 06 Jul 2005)
New Revision: 1345

Modified:
   data/CAN/list
Log:
automatic CAN database update

Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-07-06 21:13:11 UTC (rev 1344)
+++ data/CAN/list	2005-07-06 21:14:13 UTC (rev 1345)
@@ -115,6 +115,7 @@
 	NOTE: reserved
 CAN-2005-2096
 	NOTE: reserved
+	{DSA-740-1}
 CAN-2005-2095
 	NOTE: reserved
 	- squirrelmail (unfixed; #317094; medium)
@@ -767,6 +768,7 @@
 CAN-2005-2008 (Yaws Webserver 1.55 and earlier allows remote attackers to obtain the ...)
 	- yaws 1.56-1 (low)
 CAN-2005-2007 (Directory traversal vulnerability in Edgewall Trac 0.8.3 and earlier ...)
+	{DSA-739-1}
 	- trac 0.8.4-1
 CAN-2005-2006 (JBOSS 3.2.2 through 3.2.7 and 4.0.2 allows remote attackers to obtain ...)
 	NOTE: not-for-us (JBOSS)
@@ -6524,7 +6526,7 @@
 CAN-2005-0393 (The helper scripts for crip 3.5 do not properly use temporary files, ...)
 	{DSA-733-1}
 CAN-2005-0392 (ppxp does not drop root privileges before opening log files, which ...)
-	{DSA-725-1}
+	{DSA-725-2 DSA-725-1}
 CAN-2005-0391 (geneweb 4.10 and earlier does not properly check file permissions and ...)
 	{DSA-712-1}
 CAN-2005-0390 (Buffer overflow in the HTTP redirection capability in conn.c for Axel ...)