[Secure-testing-commits] r6386 - data/CVE

thijs at alioth.debian.org thijs at alioth.debian.org
Fri Aug 24 07:51:54 UTC 2007


Author: thijs
Date: 2007-08-24 07:51:54 +0000 (Fri, 24 Aug 2007)
New Revision: 6386

Modified:
   data/CVE/list
Log:
reported 8 CVE's to ircd-ircu
some NFU's


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-08-24 07:17:01 UTC (rev 6385)
+++ data/CVE/list	2007-08-24 07:51:54 UTC (rev 6386)
@@ -68,11 +68,11 @@
 CVE-2007-4432 (Untrusted search path vulnerability in the wrapper scripts for the (1) ...)
 	TODO: check
 CVE-2007-4431 (Cross-domain vulnerability in Apple Safari for Windows 3.0.3 and ...)
-	TODO: check
+	NOT-FOR-US: Safari/windows
 CVE-2007-4430 (Unspecified vulnerability in Cisco IOS allows context-dependent ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2007-4429 (Unspecified vulnerability in Skype allows remote attackers to cause a ...)
-	TODO: check
+	NOT-FOR-US: Skype
 CVE-2007-4428 (Lhaz 1.33 allows remote attackers to execute arbitrary code via ...)
 	TODO: check
 CVE-2007-4427 (Unspecified vulnerability in the login page redirection logic in the ...)
@@ -82,7 +82,7 @@
 CVE-2007-4425 (Multiple buffer overflows in Live for Speed (LFS) demo, S1, and S2 ...)
 	TODO: check
 CVE-2007-4424 (Apple Safari for Windows 3.0.3 and earlier does not prompt the user ...)
-	TODO: check
+	NOT-FOR-US: Skype
 CVE-2007-4423 (Unspecified vulnerability in the AUTH_LIST_GROUPS_FOR_AUTHID function ...)
 	TODO: check
 CVE-2007-4422 (The login interface in Symantec Enterprise Firewall 6.x, when a VPN ...)
@@ -100,35 +100,35 @@
 CVE-2007-4416 (** DISPUTED ** ...)
 	TODO: check
 CVE-2007-4415 (Cisco VPN Client on Windows before 5.0.01.0600, and the 5.0.01.0600 ...)
-	TODO: check
+	NOT-FOR-US: Cisco VPN client/windows
 CVE-2007-4414 (Cisco VPN Client on Windows before 4.8.02.0010 allows local users to ...)
-	TODO: check
+	NOT-FOR-US: Cisco VPN client/windows
 CVE-2007-4413 (Direct static code injection vulnerability in admincp/user_help.php in ...)
 	TODO: check
 CVE-2007-4412 (Multiple cross-site scripting (XSS) vulnerabilities in Headstart ...)
 	TODO: check
 CVE-2007-4411 (ircu 2.10.12.05 and earlier allows remote attackers to discover the ...)
-	TODO: check
+	- ircd-ircu <unfixed> (bug #439314)
 CVE-2007-4410 (ircu 2.10.12.05 and earlier does not properly synchronize a kick ...)
-	TODO: check
+	- ircd-ircu <unfixed> (bug #439314)
 CVE-2007-4409 (Race condition in ircu 2.10.12.01 through 2.10.12.05 allows remote ...)
-	TODO: check
+	- ircd-ircu <unfixed> (bug #439314)
 CVE-2007-4408 (ircu 2.10.12.05 and earlier ignores timestamps in bounces, which ...)
-	TODO: check
+	- ircd-ircu <unfixed> (bug #439314)
 CVE-2007-4407 (ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops ...)
-	TODO: check
+	- ircd-ircu <unfixed> (bug #439314)
 CVE-2007-4406 (ircu 2.10.12.01 through 2.10.12.04 does not remove ops privilege after ...)
-	TODO: check
+	- ircd-ircu <unfixed> (bug #439314)
 CVE-2007-4405 (ircu 2.10.12.02 through 2.10.12.04 allows remote attackers to cause a ...)
-	TODO: check
+	- ircd-ircu <unfixed> (bug #439314)
 CVE-2007-4404 (ircu 2.10.12.01 allows remote attackers to (1) cause a denial of ...)
-	TODO: check
+	- ircd-ircu <unfixed> (bug #439314)
 CVE-2007-4403 (The mIRC Control Plug-in for Winamp allows user-assisted remote ...)
-	TODO: check
+	NOT-FOR-US: mirc/winamp
 CVE-2007-4402 (Multiple unspecified scripts in mIRC allow user-assisted remote ...)
-	TODO: check
+	NOT-FOR-US: mirc
 CVE-2007-4401 (Multiple CRLF injection vulnerabilities in the Advanced mIRC ...)
-	TODO: check
+	NOT-FOR-US: mirc
 CVE-2007-4400 (CRLF injection vulnerability in the included media script in ...)
 	TODO: check
 CVE-2007-4399 (CRLF injection vulnerability in the xmms.bx 1.0 script for BitchX ...)




More information about the Secure-testing-commits mailing list