[Secure-testing-commits] r5648 - data

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Wed Apr 11 21:32:22 UTC 2007


Author: jmm-guest
Date: 2007-04-11 21:32:22 +0000 (Wed, 11 Apr 2007)
New Revision: 5648

Modified:
   data/mopb.txt
Log:
more work on MOPB, several already fixed in previous DSA :-)


Modified: data/mopb.txt
===================================================================
--- data/mopb.txt	2007-04-11 21:14:14 UTC (rev 5647)
+++ data/mopb.txt	2007-04-11 21:32:22 UTC (rev 5648)
@@ -8,13 +8,13 @@
 #TODO, needs to be fixed, Sarge not affected
 
 41  PHP 5 sqlite_udf_decode_binary() Buffer Overflow Vulnerability
-TODO
+TODO for PHP5, not activated in the PHP4 build
 
 40  PHP imap_mail_compose() Boundary Stack Buffer Overflow Vulnerability
-#TODO, needs to be fixed, CVE-2007-1825
+# Already fixed in DSA-1264 and the respective PHP4/PHP5 packages, dupe CVE-2007-0906/CVE-2007-1825
 
 39  PHP str_replace() Memory Allocation Integer Overflow Vulnerability
-TODO
+# Already fixed in DSA-1264 and the respective PHP4/PHP5 packages, dupe CVE-2007-0906/CVE-2007-1825
 
 38  PHP printf() Family 64 Bit Casting Vulnerabilities
 TODO, this smells like it can only be triggerable through malicious script, but please




More information about the Secure-testing-commits mailing list