[Secure-testing-commits] r5304 - data/CVE

Stefan Fritsch stef-guest at alioth.debian.org
Sat Jan 20 10:49:28 CET 2007


Author: stef-guest
Date: 2007-01-20 10:49:26 +0100 (Sat, 20 Jan 2007)
New Revision: 5304

Modified:
   data/CVE/list
Log:
- new wireshark issues fixed
- new netpbm issues fixed
- tdiary fixed in unstable


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-01-19 20:14:12 UTC (rev 5303)
+++ data/CVE/list	2007-01-20 09:49:26 UTC (rev 5304)
@@ -1,3 +1,8 @@
+CVE-2007-XXXX [wireshark multiple issues fixed in 0.99.5pre1]
+	- wireshark 0.99.4-4
+	TODO: check sarge's ethereal
+CVE-2007-XXXX [netpbm heap corruption]
+	- netpbm-free 2:10.0-11
 CVE-2007-0363 (Cross-site scripting (XSS) vulnerability in admin-search.php in (1) ...)
 	NOT-FOR-US: Openads
 CVE-2007-0362 (Cross-site scripting (XSS) vulnerability in the RSS feed component in ...)
@@ -958,7 +963,7 @@
 CVE-2006-6853 (Buffer overflow in Durian Web Application Server 3.02 freeware on ...)
 	NOT-FOR-US: Durian Web Application Server
 CVE-2006-6852 (Eval injection vulnerability in tDiary 2.0.3 and 2.1.4.200 61127 ...)
-	- tdiary 2.1.4-6 (bug #403345; medium)
+	- tdiary 2.0.2+20060303-5 (bug #403345; bug #404940; medium)
 CVE-2006-6851 (Multiple cross-site scripting (XSS) vulnerabilities in contact_us.php ...)
 	NOT-FOR-US: ac4p Mobilelib gold 
 CVE-2006-6850 (PHP remote file inclusion vulnerability in include.php in the Roster ...)




More information about the Secure-testing-commits mailing list