[Secure-testing-commits] r5367 - data/CVE

Stefan Fritsch stef-guest at alioth.debian.org
Sun Jan 28 17:15:59 CET 2007


Author: stef-guest
Date: 2007-01-28 17:15:56 +0100 (Sun, 28 Jan 2007)
New Revision: 5367

Modified:
   data/CVE/list
Log:
- CVE-2007-0237: new lookup-el issue fixe (low)
- bind 8 not vulnerable


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-01-28 13:14:52 UTC (rev 5366)
+++ data/CVE/list	2007-01-28 16:15:56 UTC (rev 5367)
@@ -4,10 +4,10 @@
 	- chmlib 2:0.39-1 (bug #408603; medium)
 CVE-2007-0494 [bind DoS]
 	- bind9 1:9.3.4-1
-	TODO: check bind 8
+	- bind <not-affected>
 CVE-2007-0493 [bind DoS]
 	- bind9 1:9.3.4-1
-	TODO: check bind 8
+	- bind <not-affected>
 CVE-2007-XXXX [gstreamer ffmpeg missing checks of packet sizes, chunk sizes, and fragment positions]
 	- gstreamer0.10-ffmpeg 0.10.1-6
 	- gst-ffmpeg 0.8.7-10
@@ -544,8 +544,9 @@
 	RESERVED
 CVE-2007-0238
 	RESERVED
-CVE-2007-0237
+CVE-2007-0237 [lookup-el insecure tempfile handling]
 	RESERVED
+	- lookup-el 1.4-5 (low)
 CVE-2007-0236 (Double-free vulnerability in the _ATPsndrsp function in Apple Mac OS X ...)
 	NOT-FOR-US: Mac OS X
 CVE-2007-0235 (Stack-based buffer overflow in the glibtop_get_proc_map_s function in ...)




More information about the Secure-testing-commits mailing list