[Secure-testing-commits] r2366 - data/CAN

Moritz Muehlenhoff jmm-guest at costa.debian.org
Sun Oct 9 14:05:49 UTC 2005


Author: jmm-guest
Date: 2005-10-09 14:05:44 +0000 (Sun, 09 Oct 2005)
New Revision: 2366

Modified:
   data/CAN/list
Log:
php base_dir issue fixed, new one fixed as well


Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-10-09 13:58:53 UTC (rev 2365)
+++ data/CAN/list	2005-10-09 14:05:44 UTC (rev 2366)
@@ -1,3 +1,6 @@
+CAN-2005-XXXX [Missing safemode checks in PHP's _php_image_output functions]
+	- php5 5.0.5-2
+	- php4 4:4.4.0-3
 CAN-2005-XXXX [kernel: Information leakage in orinoco driver]
 	- linux-2.6 <unfixed>
 	NOTE: Reported w/o bug to Horms
@@ -409,8 +412,8 @@
 	- linux-2.6 <unfixed> (bug #330343; bug #330287; medium)
 	- kernel-source-2.6.8 <unfixed> (bug #332596)
 CAN-2005-3054 (fopen_wrappers.c in PHP 4.4.0, and possibly other versions, does not ...)
-	- php4 <unfixed> (bug #353585; medium)
-	- php5 <unfixed> (bug #353585; medium)
+	- php4 4:4.4.0-3 (bug #353585; medium)
+	- php5 5.0.5-2 (bug #353585; medium)
 CAN-2005-3053 (The sys_set_mempolicy function in mempolicy.c in Linux kernel 2.6.x ...)
 	- linux-2.6 2.6.12-3 (bug #330343; bug #330353; medium)
 	- kernel-source-2.6.8 2.6.8-16sarge2 (medium)




More information about the Secure-testing-commits mailing list