[Secure-testing-commits] r2791 - data/CVE

Florian Weimer fw at costa.debian.org
Sun Nov 20 11:30:27 UTC 2005


Author: fw
Date: 2005-11-20 11:30:23 +0000 (Sun, 20 Nov 2005)
New Revision: 2791

Modified:
   data/CVE/list
Log:
Correct fixed version for CVE-2003-0901.


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2005-11-20 10:35:36 UTC (rev 2790)
+++ data/CVE/list	2005-11-20 11:30:23 UTC (rev 2791)
@@ -16659,8 +16659,9 @@
 	- minimalist 2.4-1
 CVE-2003-0901 (Buffer overflow in to_ascii for PostgreSQL 7.2.x, and 7.3.x before ...)
 	{DSA-397}
-	- postgresql <not-affected> (Not affected, per DSA-397
-	TODO: Previous entry said 7.3.4 fixed this, what is correct?
+	- postgresql 7.3.4-1
+	NOTE: 7.3.4-1 was uploaded to unstable in August 2003, well before the
+	NOTE: DSA, that's why the DSA says that unstable is not affected.
 CVE-2003-0900 (Perl 5.8.1 on Fedora Core does not properly initialize the random ...)
 	- perl 5.8.2
 CVE-2003-0899 (Buffer overflow in defang in libhttpd.c for thttpd 2.21 to 2.23b1 ...)




More information about the Secure-testing-commits mailing list