[Secure-testing-commits] r5488 - data/CVE

Stefan Fritsch stef-guest at alioth.debian.org
Tue Feb 27 22:17:55 UTC 2007


Author: stef-guest
Date: 2007-02-27 23:17:53 +0100 (Tue, 27 Feb 2007)
New Revision: 5488

Modified:
   data/CVE/list
Log:
- wireshark fixes were not applied, new fixed version
- ekiga fixed
- isdnutils fixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-02-27 20:52:33 UTC (rev 5487)
+++ data/CVE/list	2007-02-27 22:17:53 UTC (rev 5488)
@@ -78,7 +78,7 @@
 CVE-2007-1007 (Format string vulnerability in GnomeMeeting 1.0.2 and earlier allows ...)
 	- gnomemeeting <unfixed> (high)
 CVE-2007-1006 (Multiple format string vulnerabilities in the ...)
-	- ekiga <unfixed> (bug #411944; high)
+	- ekiga 2.0.3-2.1 (bug #411944; high)
 CVE-2007-1005
 	RESERVED
 CVE-2007-1004 (Mozilla Firefox mmight allow remote attackers to condut spoofing and ...)
@@ -136,7 +136,7 @@
 CVE-2007-0982 (Cross-site scripting (XSS) vulnerability in error.php in TaskFreak! ...)
 	NOT-FOR-US: TaskFreak!
 CVE-2007-XXXX [capi_{cmsg,message}2str not thread-safe; vulnerable to buffer overflow]
-	- isdnutils <unfixed> (bug #408530)
+	- isdnutils 1:3.9.20060704-3 (bug #408530)
 	- asterisk-chan-capi <unfixed> (bug #411293)
 	- linux-2.6 <unfixed> (bug #411294)
 CVE-2007-0981 (Mozilla based browsers, including Firefox, allow remote attackers to ...)
@@ -527,7 +527,7 @@
 CVE-2007-0858
 	RESERVED
 CVE-2007-0857 (Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin before ...)
-	- moin <unfixed> (bug #410338; medium; bug #410552)
+	- moin 1.5.3-1.2 (bug #410338; medium; bug #410552)
 CVE-2007-0856 (TmComm.sys 1.5.0.1052 in the Trend Micro Anti-Rootkit Common Module ...)
 	NOT-FOR-US: Trend Micro Anti-Rootkit Common Module
 CVE-2007-0855 (Stack-based buffer overflow in RARLabs Unrar, as packaged in WinRAR ...)
@@ -1501,16 +1501,16 @@
 CVE-2007-0460 (Multiple buffer overflows in ulogd for SUSE Linux 9.3 up to 10.1, and ...)
 	- ulogd 1.23-6 (medium)
 CVE-2007-0459 (packet-tcp.c in the TCP dissector in Wireshark (formerly Ethereal) ...)
-	- wireshark 0.99.4-4 (low)
+	- wireshark 0.99.4-5 (low)
 	[sarge] - ethereal <not-affected> (Vulnerable code not present)
 CVE-2007-0458 (Unspecified vulnerability in the HTTP dissector in Wireshark (formerly ...)
-	- wireshark 0.99.4-4 (low)
+	- wireshark 0.99.4-5 (low)
 	[sarge] - ethereal <not-affected> (Vulnerable code not present)
 CVE-2007-0457 (Unspecified vulnerability in the IEEE 802.11 dissector in Wireshark ...)
-	- wireshark 0.99.4-4 (low)
+	- wireshark 0.99.4-5 (low)
 	[sarge] - ethereal <not-affected> (Vulnerable code not present)
 CVE-2007-0456 (Unspecified vulnerability in the LLT dissector in Wireshark (formerly ...)
-	- wireshark 0.99.4-4 (low)
+	- wireshark 0.99.4-5 (low)
 	[sarge] - ethereal <not-affected> (Vulnerable code not present)
 CVE-2007-0455 (Buffer overflow in the gdImageStringFTEx function in gdft.c in GD ...)
 	- libgd2 <unfixed> (bug #408982; low)




More information about the Secure-testing-commits mailing list