[Secure-testing-commits] r948 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Sun, 01 May 2005 12:15:47 +0000


Author: jmm-guest
Date: 2005-05-01 12:15:44 +0000 (Sun, 01 May 2005)
New Revision: 948

Modified:
   sarge-checks/CAN/list
Log:
htdigest buffer overflow "vulnerability" has already
been fixed in Apache 1.3.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-05-01 12:04:44 UTC (rev 947)
+++ sarge-checks/CAN/list	2005-05-01 12:15:44 UTC (rev 948)
@@ -40,7 +40,6 @@
 	- squid (unfixed; bug #307132)
 CAN-2005-1344 (Buffer overflow in htdigest in Apache 2.0.52 may allow attackers to ...)
 	- apache2 (unfixed; bug #307134)
-	TODO: check htaccess in apache 1
 CAN-2005-1343
 	NOTE: reserved
 CAN-2005-1342
@@ -190,9 +189,9 @@
 CAN-2005-1271
 	NOTE: reserved
 CAN-2005-1270 (The (1) check_update.sh and (2) rkhunter script in Rootkit Hunter ...)
-	TODO: check
+	NOTE: not-for-us (Rootkit Hunter)
 CAN-2002-1658 (Buffer overflow in htdigest in Apache 1.3.26 and 1.3.27 may allow ...)
-	TODO: check
+	- apache 1.3.31-1
 CAN-2005-XXXX [Unspecified buffer overflow in Convert::UUlib perl module]
 	- libconvert-uulib-perl 1.0.5.1-1
 CAN-2005-1269