[Secure-testing-commits] r6124 - data/CVE

jmm-guest at alioth.debian.org jmm-guest at alioth.debian.org
Mon Jul 9 18:34:07 UTC 2007


Author: jmm-guest
Date: 2007-07-09 18:34:06 +0000 (Mon, 09 Jul 2007)
New Revision: 6124

Modified:
   data/CVE/list
Log:
rewrite freetype entry, since 2.3 has entered the archive


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-07-09 09:14:09 UTC (rev 6123)
+++ data/CVE/list	2007-07-09 18:34:06 UTC (rev 6124)
@@ -17,8 +17,9 @@
 CVE-2007-3507 (Stack-based buffer overflow in the local__vcentry_parse_value function ...)
 	- flac123 <unfixed> (medium; bug #432008)
 CVE-2007-3506 (The ft_bitmap_assure_buffer function in src/base/ftbimap.c in FreeType ...)
-	- freetype <not-affected> (bug #432013)
-	NOTE: code introduced after Debian's version
+	- freetype 2.3.4 (bug #432013)
+	[sarge] - freetype <not-affected> (Vulnerable code introduced in 2.3.x)
+	[etch] - freetype <not-affected> (Vulnerable code introduced in 2.3.x)
 CVE-2007-3505 (Multiple directory traversal vulnerabilities in QuickTalk forum 1.3 ...)
 	NOT-FOR-US: QuickTalk forum
 CVE-2007-3504 (Sun Java Web Start in JDK and JRE 5.0 Update 11 and earlier, and Java ...)




More information about the Secure-testing-commits mailing list