[Secure-testing-commits] r1826 - data/CAN

Moritz Muehlenhoff jmm-guest at costa.debian.org
Tue Sep 6 09:15:48 UTC 2005


Author: jmm-guest
Date: 2005-09-06 09:15:45 +0000 (Tue, 06 Sep 2005)
New Revision: 1826

Modified:
   data/CAN/list
Log:
track apache2 by srcpkg name
shorewall CANified some time ago


Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-09-06 09:13:07 UTC (rev 1825)
+++ data/CAN/list	2005-09-06 09:15:45 UTC (rev 1826)
@@ -1038,9 +1038,7 @@
 CAN-2005-XXXX [Inconsistent escaping of user supplied data in dbauthpgsql.c]
 	- dbmail-pgsql (unfixed; bug #290833; medium)
 CAN-2005-XXXX [buffer-overrun in apache2-ssl]
-	- apache2-ssl (unfixed; bug #320048; low)
-CAN-2005-XXXX [A client accepted by MAC address filtering to bypass any	other rule]
-	- shorewall 2.4.1-2 (bug #318946)
+	- apache2 (unfixed; bug #320048; low)
 CAN-2005-XXXX [time delay of password check proves account existence to attackers]
 	NOTE: unknown if really a bug; if it is it's different than the
 	NOTE: previous ssh delay bugs
@@ -1567,7 +1565,7 @@
 CAN-2005-2318 (Cross-site scripting (XSS) vulnerability in showerr.asp in DVBBS 7.1 ...)
 	NOTE: not-for-us (DVBBS)
 CAN-2005-2317 (Shorewall 2.4.x before 2.4.1, 2.2.x before 2.2.5, and 2.0.x before ...)
-	- shorewall 2.4.1-2 (medium)
+	- shorewall 2.4.1-2 (bug #318946; medium)
 CAN-2005-2316
 	NOTE: reserved
 CAN-2005-2315




More information about the Secure-testing-commits mailing list