[Secure-testing-commits] r988 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Wed, 04 May 2005 13:43:54 +0000


Author: jmm-guest
Date: 2005-05-04 13:43:50 +0000 (Wed, 04 May 2005)
New Revision: 988

Modified:
   sarge-checks/CAN/list
Log:
postgresql fixed.
libnet-ssleay-perl already fixed back in february


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-05-04 13:16:58 UTC (rev 987)
+++ sarge-checks/CAN/list	2005-05-04 13:43:50 UTC (rev 988)
@@ -85,9 +85,9 @@
 CAN-2005-1411 (Cybration ICUII 7.0 stores passwords in plaintext in the ...)
 	NOTE: not-for-us (ICUII)
 CAN-2005-1410 (The tsearch2 module in PostgreSQL 7.4 through 8.0.x declares the (1) ...)
-	TODO: check
+	- postgresql 7.4.7-6
 CAN-2005-1409 (PostgreSQL 7.3.x through 8.0.x gives public EXECUTE access to certain ...)
-	TODO: check
+	- postgresql 7.4.7-6
 CAN-2005-1408
 	NOTE: reserved
 CAN-2005-1407 (Skype for Windows 1.2.0.0 to 1.2.0.46 allows local users to bypass the ...)
@@ -4254,7 +4254,7 @@
 CAN-2005-0107 (bsmtpd 2.3 and earlier does not properly sanitize e-mail addresses, ...)
 	{DSA-690-1}
 CAN-2005-0106 (SSLeay.pm in libnet-ssleay-perl before 1.25 uses the /tmp/entropy file ...)
-	TODO: check
+	- libnet-ssleay-perl 1.25-1.1
 CAN-2005-0105 (Unknown vulnerability in typespeed 0.4.1 and earlier allows local ...)
 	{DSA-684-1}
 CAN-2005-0104 (Cross-site scripting (XSS) vulnerability in webmail.php in ...)