[Secure-testing-commits] r5750 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Sun Apr 29 21:24:55 UTC 2007


Author: jmm-guest
Date: 2007-04-29 21:24:52 +0000 (Sun, 29 Apr 2007)
New Revision: 5750

Modified:
   data/CVE/list
Log:
mark PHP dupe properly
record etch-specific php5 fix


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-04-29 21:14:23 UTC (rev 5749)
+++ data/CVE/list	2007-04-29 21:24:52 UTC (rev 5750)
@@ -1650,8 +1650,7 @@
 CVE-2007-1585 (The Linksys WAG200G with firmware 1.01.01, WRT54GC 2 with firmware ...)
 	NOT-FOR-US: Cisco
 CVE-2007-1584 (Buffer underflow in the header function in PHP 5.2.0 allows ...)
-	- php5 5.2.0-9 (bug #410561; bug #410995; medium)
-	NOTE: Dupe of CVE-2007-1584
+	NOTE: Dupe of CVE-2007-0907; Fixed in DSA-1264, php5 5.2.0-9, php4 6:4.4.4-9
 CVE-2007-1583 (The mb_parse_str function in PHP 4.0.0 through 4.4.6 and 5.0.0 through ...)
 	{DSA-1283-1}
 	- php5 <unfixed> (medium)
@@ -3331,6 +3330,7 @@
 CVE-2007-0988 (The zend_hash_init function in PHP 5 before 5.2.1 and PHP 4 before ...)
 	{DSA-1264-1}
 	[etch] - php4 6:4.4.4-8+etch1
+	[etch] - php5 5.2.0-8+etch1
 	- php4 6:4.4.4-9
 	- php5 5.2.0-9
 CVE-2007-0987 (Directory traversal vulnerability in index.php in Jupiter CMS 1.1.5 ...)




More information about the Secure-testing-commits mailing list