[Secure-testing-commits] r4093 - data/CVE

Moritz Muehlenhoff jmm-guest at costa.debian.org
Mon May 29 10:48:58 UTC 2006


Author: jmm-guest
Date: 2006-05-29 10:48:55 +0000 (Mon, 29 May 2006)
New Revision: 4093

Modified:
   data/CVE/list
Log:
some postgres related issues
linux-2.6 issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-05-29 09:50:52 UTC (rev 4092)
+++ data/CVE/list	2006-05-29 10:48:55 UTC (rev 4093)
@@ -355,7 +355,7 @@
 CVE-2006-2445
 	RESERVED
 CVE-2006-2444 (The snmp_trap_decode function in the SNMP NAT helper for Linux kernel ...)
-	TODO: check
+	- linux-2.6 2.6.16-15
 CVE-2006-2442 (kphone 4.2 creates .qt/kphonerc with world-readable permissions, which ...)
 	{DSA-1062-1}
 	- kphone 1:4.2-3 (bug #337830; medium)
@@ -634,6 +634,10 @@
 	- postgresql-7.4 1:7.4.13-1 (medium)
 	- postgresql-8.0 <unfixed> (medium)
 	- postgresql-8.1 8.1.4-1 (medium)
+	- psycopg <unfixed> (bug #369230)
+	- python-pgsql <unfixed> (bug #369250)
+	- pygresql 1:3.6.1-1 (bug #369329)
+	[sarge] - pygresql <not-affected> (Already includes proper quoting)
 	NOTE: Beginning with version 7.5.4, postgresql is a transition
 	NOTE: package which does not contain actual code.  That's why
 	NOTE: it's marked as fixed here.  (Previous versions are vulnerable.)




More information about the Secure-testing-commits mailing list