[Secure-testing-commits] r1485 - data/CAN

Moritz Muehlenhoff jmm-guest at costa.debian.org
Fri Jul 29 16:55:30 UTC 2005


Author: jmm-guest
Date: 2005-07-29 16:55:20 +0000 (Fri, 29 Jul 2005)
New Revision: 1485

Modified:
   data/CAN/list
Log:
different fix for xemeraldia, the previous one seems to have been lost
   in the server move
update on courier-spf


Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-07-29 16:49:38 UTC (rev 1484)
+++ data/CAN/list	2005-07-29 16:55:20 UTC (rev 1485)
@@ -16,7 +16,7 @@
 CAN-2005-XXXX [xgalaga score file segfault]
 	- xgalaga 2.0.34-31 (low)
 CAN-2005-XXXX [xemeraldia games file overwrite]
-	- xemeraldia 0.3-30 (low)
+	- xemeraldia 0.4-1 (low)
 CAN-2005-XXXX [tdiary cross-site request forgeries]
 	- tdiary 2.0.2-1 (medium)
 CAN-2005-2335 [remote exploitation of fetchmail by pop3 server]
@@ -797,9 +797,7 @@
 CAN-2005-2152 (SQL injection vulnerability in Geeklog before 1.3.11 allows remote ...)
 	NOTE: not-for-us (Geeklog)
 CAN-2005-2151 (spf.c in Courier Mail Server does not properly handle DNS failures ...)
-	NOTE: testing/sid should be affected, but that's a very minor issue and I'm
-	NOTE: currently too busy 
-	- courier 0.47-6
+	- courier 0.47-6 (low)
 CAN-2005-2150 (Windows NT 4.0 and Windows 2000 before URP1 for Windows 2000 SP4 does ...)
 	NOTE: not-for-us (Microsoft)
 CAN-2005-2149 (config.php in Cacti 0.8.6e and earlier allows remote attackers to set ...)




More information about the Secure-testing-commits mailing list