[Secure-testing-commits] r580 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Fri, 18 Mar 2005 23:00:57 +0100


Author: jmm-guest
Date: 2005-03-18 23:00:54 +0100 (Fri, 18 Mar 2005)
New Revision: 580

Modified:
   sarge-checks/CAN/list
Log:
xloadimage has been fixed.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-03-18 21:51:48 UTC (rev 579)
+++ sarge-checks/CAN/list	2005-03-18 22:00:54 UTC (rev 580)
@@ -364,9 +364,8 @@
 CAN-2005-0640 (Computer Associates (CA) Unicenter Asset Management (UAM) 4.0 does not ...)
 	NOTE: not-for-us (Computer Associates UAM)
 CAN-2005-0639 (Multiple vulnerabilities in xli before 1.17 may allow remote attackers ...)
+	- xloadimage 4.1-14.2
 	- xli 1.17.0-17
-	NOTE: I think xloadimage might be also vulnerable, I have mailed 
-	NOTE: Tavis Ormandy  about this. -- Djoume
 	NOTE: Bug maintainer to mention CAN-id in changelog - jmm
 CAN-2005-0638 (xloadimage before 4.1-r2, and xli before 1.17, allows attackers to ...)
 	- xli (unfixed; bug #298039)