[Secure-testing-commits] r963 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Tue, 03 May 2005 06:53:50 +0000


Author: jmm-guest
Date: 2005-05-03 06:53:37 +0000 (Tue, 03 May 2005)
New Revision: 963

Modified:
   sarge-checks/CAN/list
Log:
gnome-vfs2 2.10 in experimental fixed, so proper version will
propagate to sid once Sarge is out.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-05-02 21:40:17 UTC (rev 962)
+++ sarge-checks/CAN/list	2005-05-03 06:53:37 UTC (rev 963)
@@ -1810,8 +1810,8 @@
 CAN-2005-0707 (Buffer overflow in the IMAP daemon (IMAP4d32.exe) for Ipswitch ...)
 	NOTE: not-for-us (Ipswitch Collaboration Suite)
 CAN-2005-0706 (Buffer overflow in discdb.c for grip 3.1.2 allows attackers to cause a ...)
-	NOTE: gnome-vfs2 is only vulnerable in stable (1.9) and experimental (2.10), but not
-	NOTE: in the Sarge version which does not install the module with the vulnerable code
+	NOTE: Sarge version does not install the module with the vulnerable code
+	NOTE: gnome-vfs2 is vulnerable in stable (1.9), 2.10 in experimental has been fixed
 	- grip 3.2.0-4
 	- libcdaudio 0.99.9-2.1
 	- gnome-vfs 1.0.5-5.1