[Secure-testing-commits] r624 - sarge-checks/CAN

SALVETTI Djoumé djoume-guest@costa.debian.org
Wed, 23 Mar 2005 11:04:48 +0100


Author: djoume-guest
Date: 2005-03-23 11:04:45 +0100 (Wed, 23 Mar 2005)
New Revision: 624

Modified:
   sarge-checks/CAN/list
Log:
* xerces update


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-03-23 08:14:17 UTC (rev 623)
+++ sarge-checks/CAN/list	2005-03-23 10:04:45 UTC (rev 624)
@@ -1257,9 +1257,9 @@
 CAN-2004-1576 (Format string vulnerability in Judge Dredd: Dredd vs. Death 1.01 and ...)
 	NOTE: not-for-us (Judge Dredd)
 CAN-2004-1575 (The XML parser in Xerces-C++ 2.5.0 allows remote attackers to cause a ...)
-	- xerces25 (unfixed; bug #296432)
-	- xerces24 (unfixed; bug #296432)
-	- xerces23 (unfixed; bug #296432)
+	- xerces25 2.5.0-4
+	- xerces24 2.4.0-4
+	NOTE: maintainer believe that this CAN doesn't apply to xerces23 (see bug #296432)
 	NOTE: maintainer believe that this CAN doesn't apply to xerces21 (see bug #296466)
 CAN-2004-1574 (Buffer overflow in Vypress Messenger 3.5.1 and earlier allows remote ...)
 	NOTE: not-for-us (Vypress)