[Secure-testing-commits] r3940 - data/CVE

Stefan Fritsch stef-guest at costa.debian.org
Fri May 12 09:56:03 UTC 2006


Author: stef-guest
Date: 2006-05-12 09:55:58 +0000 (Fri, 12 May 2006)
New Revision: 3940

Modified:
   data/CVE/list
Log:
xview issue unimportant

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-05-11 22:25:46 UTC (rev 3939)
+++ data/CVE/list	2006-05-12 09:55:58 UTC (rev 3940)
@@ -171,8 +171,10 @@
 CVE-2005-4797 (Directory traversal vulnerability in printd line printer daemon (lpd) ...)
 	NOT-FOR-US: Solaris
 CVE-2005-4796 (Unspecified vulnerability in the XView library (libxview.so) in ...)
-	TODO: check
-	NOTE: says Solaris, but xview is also in Debian. Pinged Maintainer.
+	- xview <unfixed> (unimportant)
+	NOTE: Is only relevant for suid binaries, but xview is not really suitable for
+	NOTE: those anyway. Exact information is not available, but a similar problem
+	NOTE: is already fixed in the Debian package.
 CVE-2005-4795 (Unspecified vulnerability in the multi-language environment library ...)
 	NOT-FOR-US: Solaris
 CVE-2006-XXXX [pstotext insufficient filename sanitizing]




More information about the Secure-testing-commits mailing list