[Secure-testing-commits] r4562 - in data: CVE DSA

Stefan Fritsch stef-guest at costa.debian.org
Sun Aug 13 18:50:39 UTC 2006


Author: stef-guest
Date: 2006-08-13 18:50:36 +0000 (Sun, 13 Aug 2006)
New Revision: 4562

Modified:
   data/CVE/list
   data/DSA/list
Log:
- DSA 1149+1150
- alsaplayer bugnum


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-08-13 13:22:29 UTC (rev 4561)
+++ data/CVE/list	2006-08-13 18:50:36 UTC (rev 4562)
@@ -4,7 +4,7 @@
 	- gnutls12 1.2.11-3 (medium)
 	- gnutls13 1.4.2-1 (medium)
 CVE-2006-XXXX [AlsaPlayer Multiple Buffer Overflow Vulnerabilities]
-	- alsaplayer <unfixed> (medium)
+	- alsaplayer <unfixed> (medium; bug #382842)
 CVE-2006-XXXX [unspecified vulnerability in ruby on rails]
 	- rails 1.1.6-1 (bug #382255; medium)
 CVE-2006-4071 (Sign extension vulnerability in the createBrushIndirect function in ...)
@@ -6830,8 +6830,9 @@
 	RESERVED
 CVE-2006-1169
 	RESERVED
-CVE-2006-1168
+CVE-2006-1168 [ncompress -- buffer underflow]
 	RESERVED
+	- ncompress 4.2.4-15sarge2
 CVE-2006-1167
 	RESERVED
 CVE-2006-1165 (Cross-site scripting (XSS) vulnerability in the mediamanager module in ...)

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2006-08-13 13:22:29 UTC (rev 4561)
+++ data/DSA/list	2006-08-13 18:50:36 UTC (rev 4562)
@@ -1,3 +1,9 @@
+[12 Aug 2006] DSA-1150-1 shadow - programming error
+	{CVE-2006-3378}
+	[sarge] - shadow 1:4.0.3-31sarge8
+[10 Aug 2006] DSA-1149-1 ncompress - buffer underflow
+	{CVE-2006-1168}
+	[sarge] - ncompress 4.2.4-15sarge2
 [09 Aug 2006] DSA-1146-1 krb5 - programming error
 	{CVE-2006-3083 CVE-2006-3084}
  	[sarge] - krb5 1.3.6-2sarge3




More information about the Secure-testing-commits mailing list