[Secure-testing-commits] r3879 - data/CVE

Moritz Muehlenhoff jmm-guest at costa.debian.org
Wed Apr 26 15:50:19 UTC 2006


Author: jmm-guest
Date: 2006-04-26 15:50:08 +0000 (Wed, 26 Apr 2006)
New Revision: 3879

Modified:
   data/CVE/list
Log:
preparation of asterisk DSA showed, that this was a non-issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-04-26 09:14:28 UTC (rev 3878)
+++ data/CVE/list	2006-04-26 15:50:08 UTC (rev 3879)
@@ -12788,8 +12788,8 @@
 CVE-2005-2082 (im_trbbs.cgi in imTRSET 1.02 and earlier allows remote attackers to ...)
 	NOT-FOR-US: imTRSET
 CVE-2005-2081 (Stack-based buffer overflow in the function that parses commands in ...)
-	- asterisk 1:1.0.9.dfsg-1 (bug #315532; medium)
-	NOTE: Sarge and Woody are affected
+	- asterisk 1:1.0.9.dfsg-1 (bug #315532; unimportant)
+	NOTE: Can only be exploited by users who already have the privilege to execute arbitrary commands
 CVE-2005-2080 (Unknown vulnerability in Remote Agent for Windows Servers (RAWS) in ...)
 	NOT-FOR-US: Veritas Backup
 CVE-2005-2079 (Heap-based buffer overflow in the Admin Plus Pack Option for VERITAS ...)




More information about the Secure-testing-commits mailing list