[Secure-testing-commits] r5281 - data/CVE
Stefan Fritsch
stef-guest at alioth.debian.org
Tue Jan 16 23:29:51 CET 2007
Author: stef-guest
Date: 2007-01-16 23:29:49 +0100 (Tue, 16 Jan 2007)
New Revision: 5281
Modified:
data/CVE/list
Log:
fix typo
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2007-01-16 22:27:40 UTC (rev 5280)
+++ data/CVE/list 2007-01-16 22:29:49 UTC (rev 5281)
@@ -1,14 +1,14 @@
CVE-2007-XXXX [udev wrong permissions on raid devices]
- linux-2.6 <unfixed> (bug #404927)
CVE-2007-XXXX [yacas insecure rpath]
- - yacas <unfixed> (bug #399226; bug #399227)
+ - yacas <unfixed> (bug #399226; bug #399227; low)
CVE-2007-XXXX [TXT record parsing overflow with special characters]
- pdns <unfixed> (bug #406465)
CVE-2007-XXXX [gosa allows non-priviledged users to change admin password]
- gosa 2.5.8-1 (medium)
NOTE: http://secunia.com/advisories/23749/
CVE-2007-0248 [Denial of Service Vulnerabilities]
- - squid <unfixed> (low) (bug #407202)
+ - squid <unfixed> (low; bug #407202)
TODO: check if version 2.5.9-10sarge2 have comprimised code.
NOTE: reference - http://secunia.com/advisories/23767/
CVE-2007-XXXX [libgtop2 "glibtop_get_proc_map_s()" Buffer Overflow]
More information about the Secure-testing-commits
mailing list