[Secure-testing-commits] r5226 - data/CVE

Stefan Fritsch stef-guest at alioth.debian.org
Mon Jan 8 21:33:59 CET 2007


Author: stef-guest
Date: 2007-01-08 21:33:56 +0100 (Mon, 08 Jan 2007)
New Revision: 5226

Modified:
   data/CVE/list
Log:
- old ssmtp issue already fixed
- libxslt fixed (previous fix was incomplete)


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-01-08 20:22:06 UTC (rev 5225)
+++ data/CVE/list	2007-01-08 20:33:56 UTC (rev 5226)
@@ -1,3 +1,5 @@
+CVE-2006-XXXX [ssmtp password leak]
+	- ssmtp 2.61-10.1 (bug #369542; low)
 CVE-2006-6870 [avahi DoS]
 	- avahi 0.6.16-1
 CVE-2007-XXXX [CenterICQ buffer overflow]
@@ -1664,7 +1666,7 @@
 CVE-1999-1590 (Directory traversal vulnerability in Muhammad A. Muquit wwwcount ...)
 	NOT-FOR-US: Muhammad A. Muquit wwwcoun
 CVE-2006-XXXX [libxslt segfault / DoS]
-	- libxslt 1.1.18-3 (low)
+	- libxslt 1.1.19-1 (low)
 	[sarge] - libxslt <not-affected> (vulnerability added later)
 CVE-2006-6177 (SQL injection vulnerability in system/core/users/users.profile.inc.php ...)
 	NOT-FOR-US: Neocrome Seditio




More information about the Secure-testing-commits mailing list