[Secure-testing-commits] r5003 - data/CVE

Stefan Fritsch stef-guest at alioth.debian.org
Thu Nov 23 23:17:38 CET 2006


Author: stef-guest
Date: 2006-11-23 23:17:36 +0100 (Thu, 23 Nov 2006)
New Revision: 5003

Modified:
   data/CVE/list
Log:
- CVE-2006-601[67] new wordpress issues already fixed
- CVE-2006-6015 new konqueror issue (medium)
- CVE-2006-6013 new kfreebsd-5 issue
- some NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-11-22 22:45:15 UTC (rev 5002)
+++ data/CVE/list	2006-11-23 22:17:36 UTC (rev 5003)
@@ -89,17 +89,19 @@
 CVE-2006-6018 (** DISPUTED ** ...)
 	NOT-FOR-US: My-BIC
 CVE-2006-6017 (WordPress before 2.0.5 does not properly store a profile containing a ...)
-	TODO: check
+	- wordpress 2.0.5-0.1
 CVE-2006-6016 (wp-admin/user-edit.php in WordPress before 2.0.5 allows remote ...)
-	TODO: check
+	- wordpress 2.0.5-0.1
 CVE-2006-6015 (Buffer overflow in the JavaScript implementation in Safari on Apple ...)
-	TODO: check
+	- kdebase <unfixed> (medium)
+	NOTE: konqueror 4:3.5.5a.dfsg.1-2 is vulnerable
 CVE-2006-6014 (The NetBSD-current kernel before 20061028 does not properly perform ...)
-	TODO: check
+	NOT-FOR-US: NetBSD
 CVE-2006-6013 (Integer signedness error in the fw_ioctl (FW_IOCTL) function in the ...)
-	TODO: check
+	- kfreebsd-5 <unfixed>
+	[etch] - kfreebsd-5 <no-dsa> (no security support)
 CVE-2006-6012 (Cross-site scripting (XSS) vulnerability in csm/asp/listings.asp in ...)
-	TODO: check
+	NOT-FOR-US: Car Site Manager
 CVE-2006-6011 (Unspecified vulnerability in SAP Web Application Server before 6.40 ...)
 	NOT-FOR-US: SAP
 CVE-2006-6010 (SAP allows remote attackers to obtain potentially sensitive ...)




More information about the Secure-testing-commits mailing list