[Secure-testing-commits] r6439 - data/CVE

fw at alioth.debian.org fw at alioth.debian.org
Thu Aug 30 11:08:33 UTC 2007


Author: fw
Date: 2007-08-30 11:08:33 +0000 (Thu, 30 Aug 2007)
New Revision: 6439

Modified:
   data/CVE/list
Log:
CVE-2007-4225, CVE-2007-4224, CVE-2007-3820: kdebase fixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-08-30 09:56:15 UTC (rev 6438)
+++ data/CVE/list	2007-08-30 11:08:33 UTC (rev 6439)
@@ -776,11 +776,11 @@
 CVE-2007-4226 (Directory traversal vulnerability in the BlueCat Networks Proteus IPAM ...)
 	NOT-FOR-US: BlueCat Networks Proteus IPAM appliance
 CVE-2007-4225 (Visual truncation vulnerability in KDE Konqueror 3.5.7 allows remote ...)
-	- kdebase <unfixed> (bug #433072; low)
+	- kdebase 4:3.5.7-3 (bug #433072; low)
 	[sarge] - kdebase <no-dsa> (Minor issue)
 	[etch] - kdebase <no-dsa> (Minor issue)
 CVE-2007-4224 (KDE Konqueror 3.5.7 allows remote attackers to spoof the URL address ...)
-	- kdebase <unfixed> (bug #433072; low)
+	- kdebase 4:3.5.7-3 (bug #433072; low)
 	[sarge] - kdebase <no-dsa> (Minor issue)
 	[etch] - kdebase <no-dsa> (Minor issue)
 CVE-2007-4223
@@ -1789,7 +1789,7 @@
 	NOTE: Etch and Sarge affected
 	NOTE: http://ftp.digium.com/pub/asa/ASA-2007-014.html
 CVE-2007-3820 (konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to ...)
-	- kdebase <unfixed> (bug #433072; low)
+	- kdebase 4:3.5.7-3 (bug #433072; low)
 	[sarge] - kdebase <no-dsa> (Minor issue)
 	[etch] - kdebase <no-dsa> (Minor issue)
 	NOTE: http://marc.info/?l=full-disclosure&m=118437069815691&w=2
@@ -3265,6 +3265,7 @@
 	- kdebase <unfixed> (low)
 	[sarge] - kdebase <no-dsa> (Minor issue)
 	[etch] - kdebase <no-dsa> (Minor issue)
+	TODO: check if this is fixed in kdebase 4:3.5.7-3
 CVE-2007-3142 (Visual truncation vulnerability in Opera 9.21 allows remote attackers ...)
 	NOT-FOR-US: Opera
 CVE-2007-3141 (PHP remote file inclusion vulnerability in core/editor.php in ...)




More information about the Secure-testing-commits mailing list