[Secure-testing-commits] r5014 - data/CVE

Stefan Fritsch stef-guest at alioth.debian.org
Mon Nov 27 21:54:51 CET 2006


Author: stef-guest
Date: 2006-11-27 21:54:48 +0100 (Mon, 27 Nov 2006)
New Revision: 5014

Modified:
   data/CVE/list
Log:
- CVE-2006-6085: new kile issue already fixed
- CVE-2006-6077: new firefox issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2006-11-27 20:47:54 UTC (rev 5013)
+++ data/CVE/list	2006-11-27 20:54:48 UTC (rev 5014)
@@ -98,7 +98,7 @@
 CVE-2006-6086 (PHP remote file inclusion vulnerability in ark_inc.php in e-Ark 1.0 ...)
 	TODO: check
 CVE-2006-6085 (Kile before 1.9.3 does not assign a backup file the same permissions ...)
-	TODO: check
+	- kile 1:1.9.3-1
 CVE-2006-6084 (Directory traversal vulnerability in abitwhizzy.php in aBitWhizzy ...)
 	TODO: check
 CVE-2006-6083 (SQL injection vulnerability in search.asp in CreaScripts Creadirectory ...)
@@ -114,7 +114,9 @@
 CVE-2006-6078 (PHP remote file inclusion vulnerability in common.inc.php in a-ConMan ...)
 	TODO: check
 CVE-2006-6077 (The (1) Password Manager in Mozilla Firefox 2.0, and 1.5.0.8 and ...)
-	TODO: check
+	- iceweasel <unfixed> (high)
+	- mozilla-firefox <unfixed> (high)
+	- xulrunner <unfixed> (high)
 CVE-2006-6076 (Buffer overflow in the Tape Engine (tapeeng.exe) in Computer ...)
 	TODO: check
 CVE-2006-6075 (Cross-site scripting (XSS) vulnerability in addpost1.asp in BaalAsp ...)
@@ -142,7 +144,7 @@
 CVE-2006-6064 (Multiple buffer overflows in the Message Parsing Interpreter (MPI) in ...)
 	TODO: check
 CVE-2006-6063 (Stack-based buffer overflow in Un4seen XMPlay 3.3.0.5 and earlier ...)
-	TODO: check
+	NOT-FOR-US: XMPlay
 CVE-2006-6062 (Unspecified vulnerability in Apple Mac OS X 10.4.8, and possibly other ...)
 	NOT-FOR-US: Apple Mac OS X
 CVE-2006-6061 (com.apple.AppleDiskImageController in Apple Mac OS X 10.4.8, and ...)




More information about the Secure-testing-commits mailing list