[Secure-testing-commits] r1027 - sarge-checks/CAN

Joey Hess joeyh@costa.debian.org
Tue, 10 May 2005 03:58:39 +0000


Author: joeyh
Date: 2005-05-10 03:58:37 +0000 (Tue, 10 May 2005)
New Revision: 1027

Modified:
   sarge-checks/CAN/list
Log:
updates

Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-05-10 03:09:21 UTC (rev 1026)
+++ sarge-checks/CAN/list	2005-05-10 03:58:37 UTC (rev 1027)
@@ -82,6 +82,7 @@
 CAN-2005-XXXX [eskuel: No authentication at all]
 	- eskuel (unfixed; bug #163653)
 CAN-2005-XXXX [48 new vulnerabilities in Ethereal]
+	TODO: um, why is this under an ethereal pseudo-CAN?
 	- elog 2.5.7+r1558-2
 CAN-2005-XXXX [Unspeficied security issue in ipsec-tool's single DES support]
 	- ipsec-tools 0.5.2-1
@@ -1758,8 +1759,6 @@
 CAN-2005-0807 (Multiple buffer overflows in Cain & Abel before 2.67 allow remote ...)
 	NOTE: not-for-us (Cain & Abel)
 CAN-2005-0806 (Evolution 2.0.3 allows remote attackers to cause a denial of service ...)
-	NOTE: joeyh reviewed t-p-u version for testing, found non-security
-	NOTE: changes and has asked maintainer for explanation
 	- evolution 2.0.4-2
 	- evolution-data-server1.2 1.2.2-1
 CAN-2005-0805 (SQL injection vulnerability in index.php in Subdreamer Light, when ...)