[Secure-testing-commits] r5306 - data/CVE

Florian Weimer fw at alioth.debian.org
Sat Jan 20 15:33:56 CET 2007


Author: fw
Date: 2007-01-20 15:33:54 +0100 (Sat, 20 Jan 2007)
New Revision: 5306

Modified:
   data/CVE/list
Log:
FileZilla issues actually affect us


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-01-20 11:08:55 UTC (rev 5305)
+++ data/CVE/list	2007-01-20 14:33:54 UTC (rev 5306)
@@ -97,11 +97,11 @@
 CVE-2007-0318 (The do_hfs_truncate function in Mac OS X 10.4.8 allows ...)
 	NOT-FOR-US: Apple Mac OS
 CVE-2007-0317 (Format string vulnerability in the LogMessage function in FileZilla ...)
-	NOT-FOR-US: FileZilla
+	- filezilla <unfixed> (medium; bug#407683)
 CVE-2007-0316 (Multiple SQL injection vulnerabilities in All In One Control Panel ...)
 	NOT-FOR-US: All In One Control Panel (AIOCP)
 CVE-2007-0315 (Multiple buffer overflows in FileZilla before 2.2.30a allow remote ...)
-	NOT-FOR-US: FileZilla
+	- filezilla <not-affected> (fixed before the first Debian upload)
 CVE-2007-0314 (Multiple PHP remote file inclusion vulnerabilities in Article System ...)
 	NOT-FOR-US: Article System
 CVE-2007-0313 (Unspecified vulnerability in GONICUS System Administration (GOsa) ...)
@@ -11070,7 +11070,7 @@
 CVE-2006-2404 (Directory traversal vulnerability in popup.php in RadScripts RadLance ...)
 	NOT-FOR-US: RadScripts
 CVE-2006-2403 (Buffer overflow in FileZilla before 2.2.23 allows remote attackers to ...)
-	NOT-FOR-US: FileZilla
+	- filezilla <not-affected> (fixed before the first Debian upload)
 CVE-2006-2402 (Buffer overflow in the changeRegistration function in servernet.cpp ...)
 	NOT-FOR-US: Outgun
 CVE-2006-2401 (The leetnet functions (leetnet/rudp.cpp) in Outgun 1.0.3 bot 2 and ...)




More information about the Secure-testing-commits mailing list