[Secure-testing-commits] r5304 - data/CVE
Stefan Fritsch
stef-guest at alioth.debian.org
Sat Jan 20 10:49:28 CET 2007
Author: stef-guest
Date: 2007-01-20 10:49:26 +0100 (Sat, 20 Jan 2007)
New Revision: 5304
Modified:
data/CVE/list
Log:
- new wireshark issues fixed
- new netpbm issues fixed
- tdiary fixed in unstable
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2007-01-19 20:14:12 UTC (rev 5303)
+++ data/CVE/list 2007-01-20 09:49:26 UTC (rev 5304)
@@ -1,3 +1,8 @@
+CVE-2007-XXXX [wireshark multiple issues fixed in 0.99.5pre1]
+ - wireshark 0.99.4-4
+ TODO: check sarge's ethereal
+CVE-2007-XXXX [netpbm heap corruption]
+ - netpbm-free 2:10.0-11
CVE-2007-0363 (Cross-site scripting (XSS) vulnerability in admin-search.php in (1) ...)
NOT-FOR-US: Openads
CVE-2007-0362 (Cross-site scripting (XSS) vulnerability in the RSS feed component in ...)
@@ -958,7 +963,7 @@
CVE-2006-6853 (Buffer overflow in Durian Web Application Server 3.02 freeware on ...)
NOT-FOR-US: Durian Web Application Server
CVE-2006-6852 (Eval injection vulnerability in tDiary 2.0.3 and 2.1.4.200 61127 ...)
- - tdiary 2.1.4-6 (bug #403345; medium)
+ - tdiary 2.0.2+20060303-5 (bug #403345; bug #404940; medium)
CVE-2006-6851 (Multiple cross-site scripting (XSS) vulnerabilities in contact_us.php ...)
NOT-FOR-US: ac4p Mobilelib gold
CVE-2006-6850 (PHP remote file inclusion vulnerability in include.php in the Roster ...)
More information about the Secure-testing-commits
mailing list