[Secure-testing-commits] r5707 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Sun Apr 22 20:29:08 UTC 2007


Author: jmm-guest
Date: 2007-04-22 20:29:06 +0000 (Sun, 22 Apr 2007)
New Revision: 5707

Modified:
   data/CVE/list
Log:
non-free again


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-04-22 20:22:50 UTC (rev 5706)
+++ data/CVE/list	2007-04-22 20:29:06 UTC (rev 5707)
@@ -184,7 +184,12 @@
 CVE-2007-2023 (USB20.dll in Secustick USB flash drive decouples the authorization and ...)
 	NOT-FOR-US: Secustick USB flash drive
 CVE-2007-2022 (Unspecified vulnerability in the Adobe Macromedia Flash Player 7.x and ...)
-	- kdelibs <unfixed> (low)
+	- flashplayer-mozilla <unfixed> (unknown)
+	[sarge] - flashplayer-mozilla <no-dsa> (Non-free not supported)
+	[etch] - flashplayer-mozilla <no-dsa> (Non-free not supported)
+	NOTE: Flash Plugin has a vulnerablity, which will only be disclosed in a few months
+	NOTE: Some browser vendors produce updates, which fix this issue on the browser side,
+	NOTE: but that it not of concern for Debian
 CVE-2007-2021 (Multiple PHP remote file inclusion vulnerabilities in Pineapple ...)
 	NOT-FOR-US: Pineapple Technologies Lore
 CVE-2007-2020 (** DISPUTED ** ...)




More information about the Secure-testing-commits mailing list