[Secure-testing-commits] r3783 - data/CVE

Moritz Muehlenhoff jmm-guest at costa.debian.org
Tue Apr 11 08:34:04 UTC 2006


Author: jmm-guest
Date: 2006-04-11 08:33:56 +0000 (Tue, 11 Apr 2006)
New Revision: 3783

Modified:
   data/CVE/list
Log:
new linphone issue
no-dsa for older kmail issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-04-10 20:31:16 UTC (rev 3782)
+++ data/CVE/list	2006-04-11 08:33:56 UTC (rev 3783)
@@ -1,3 +1,5 @@
+CVE-2006-XXXX [linphone insecure password leakage]
+	- linphone <unfixed> (bug #361913)
 CVE-2006-1656 (vserver in util-vserver 0.30.209 executes a command as root when the ...)
 	- util-vserver 0.30.210-1 (bug #360438; unimportant)
 CVE-2006-1655 (Unspecified vulnerability in mpg123 0.59r allows user-complicit ...)
@@ -18309,7 +18311,8 @@
 	NOTE: see http://www.securiteam.com/unixfocus/5GP0B0AFFE.html
 	NOTE: see http://secunia.com/advisories/14925
 	NOTE: kde maintainers informed of it by security team
-	- kdepim <unfixed> (bug #305601; medium)
+	- kdepim <unfixed> (bug #305601; low)
+	[sarge] - kdepim <no-dsa> (Hardly exploitable)
 	NOTE: On woody, kmail is part of kdenetwork, but there is no GnuPG
 	NOTE: support, so this issue is not very important.
 CVE-2005-0403 (init_dev in tty_io.c in the Red Hat backport of NPTL to Red Hat ...)




More information about the Secure-testing-commits mailing list