[Secure-testing-commits] r546 - sarge-checks/CAN

SALVETTI Djoumé djoume-guest@costa.debian.org
Fri, 11 Mar 2005 16:58:40 +0100


Author: djoume-guest
Date: 2005-03-11 16:58:37 +0100 (Fri, 11 Mar 2005)
New Revision: 546

Modified:
   sarge-checks/CAN/list
Log:
* updates


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-03-11 15:54:56 UTC (rev 545)
+++ sarge-checks/CAN/list	2005-03-11 15:58:37 UTC (rev 546)
@@ -153,8 +153,7 @@
 CAN-2005-0655 (auraCMS 1.5 allows remote attackers to obtain sensitive information ...)
 	NOTE: not-for-us (auraCMS)
 CAN-2005-0654 (gifload.exe in GIMP 2.0.5, 2.2.3, and possibly 2.2.4 allows remote ...)
-	NOTE: I don't think this is a security issue
-	NOTE: I've mailed maintainer -- Djoume
+	NOTE: this is not a security issue according to maintainer
 CAN-2005-0653 (phpMyAdmin 2.6.1 does not properly grant permissions on tables with an ...)
 	- phpmyadmin 3:2.6.1-pl3-1
 CAN-2005-0652 (Unknown vulnerability in HP OpenVMS VAX 7.x and 6.x and OpenVMS Alpha ...)
@@ -189,7 +188,7 @@
 	NOTE: Tavis Ormandy  about this. -- Djoume
 CAN-2005-0638 (xloadimage before 4.1-r2, and xli before 1.17, allows attackers to ...)
 	- xli (unfixed; bug #298039)
-	- xloadimage (unfixed; bug filed)
+	- xloadimage (unfixed; bug #298926)
 CAN-2005-0637 (The copy functions in locore.s in OpenBSD 3.5 and 3.6 may allow ...)
 	NOTE: not-for-us (OpenBSD)
 CAN-2005-0636 (Format string vulnerability in Foxmail Server 2.0 allows remote ...)