[Secure-testing-commits] r1910 - data/CAN

Florian Weimer fw at costa.debian.org
Sun Sep 11 07:25:41 UTC 2005


Author: fw
Date: 2005-09-11 07:25:36 +0000 (Sun, 11 Sep 2005)
New Revision: 1910

Modified:
   data/CAN/list
Log:
OpenTTD will not be part of Debian soon.
Two Mozilla-related bug reports were filed.


Modified: data/CAN/list
===================================================================
--- data/CAN/list	2005-09-11 07:15:31 UTC (rev 1909)
+++ data/CAN/list	2005-09-11 07:25:36 UTC (rev 1910)
@@ -218,7 +218,7 @@
 CAN-2005-2764
 	NOTE: reserved
 CAN-2005-2763 (Multiple format string vulnerabilities in OpenTTD before 0.4.0.1 allow ...)
-	TODO: check
+	NOTE: not-for-us (OpenTTD)
 end claimed by jmm
 CAN-2005-2762
 	NOTE: reserved
@@ -1550,8 +1550,9 @@
 CAN-2005-2415 (Multiple SQL injection vulnerabilities in Contrexx before 1.0.5 allow ...)
 	NOTE: not-for-us (Contrexx)
 CAN-2005-2414 (Race condition in the xpcom library, as used by web browsers such as ...)
-	NOTE: This is pretty obscure
-	TODO: check
+	- mozilla-firefox (bug #327549; medium)
+	- mozilla-browser (bug #327550; medium)
+	TODO: check more Mozilla-based browsers
 CAN-2005-2413 (PHP remote file inclusion vulnerability in apa_phpinclude.inc.php in ...)
 	NOTE: not-for-us (Atomic Photo Album)
 CAN-2005-2412 (PHP remote file inclusion vulnerability in block.php in PHP FirstPost ...)




More information about the Secure-testing-commits mailing list