[Secure-testing-commits] r3889 - data/CVE

Stefan Fritsch stef-guest at costa.debian.org
Sat Apr 29 06:40:50 UTC 2006


Author: stef-guest
Date: 2006-04-29 06:40:39 +0000 (Sat, 29 Apr 2006)
New Revision: 3889

Modified:
   data/CVE/list
Log:
new php issues
dnsmasq issue is security relevant


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-04-28 22:23:41 UTC (rev 3888)
+++ data/CVE/list	2006-04-29 06:40:39 UTC (rev 3889)
@@ -3,7 +3,7 @@
 CVE-2006-2018 (** DISPUTED ** ...)
 	TODO: check
 CVE-2006-2017 (Dnsmasq 2.29 allows remote attackers to cause a denial of service ...)
-	TODO: check
+	- dnsmasq 2.30-1 (medium)
 CVE-2006-2016 (Multiple cross-site scripting (XSS) vulnerabilities in phpLDAPadmin ...)
 	TODO: check
 CVE-2006-2015 (Cross-site scripting (XSS) vulnerability in SL_site 1.0 allows remote ...)
@@ -53,9 +53,11 @@
 CVE-2006-1992 (mshtml.dll 6.00.2900.2873, as used in Microsoft Internet Explorer, ...)
 	TODO: check
 CVE-2006-1991 (The substr_compare function in string.c in PHP 4.4.2 and 5.1.2 allows ...)
-	TODO: check
+	- php4 <unfixed> (bug filed; medium)
+	- php5 <unfixed> (bug filed; medium)
 CVE-2006-1990 (Integer overflow in the wordwrap function in string.c in PHP 4.4.2 and ...)
-	TODO: check
+	- php4 <unfixed> (bug filed; medium)
+	- php5 <unfixed> (bug filed; medium)
 CVE-2006-1989
 	RESERVED
 CVE-2006-1988 (The WebTextRenderer(WebInternal) _CG_drawRun:style:geometry: function ...)




More information about the Secure-testing-commits mailing list