[Secure-testing-commits] r6126 - data/CVE

fw at alioth.debian.org fw at alioth.debian.org
Tue Jul 10 11:43:36 UTC 2007


Author: fw
Date: 2007-07-10 11:43:36 +0000 (Tue, 10 Jul 2007)
New Revision: 6126

Modified:
   data/CVE/list
Log:
CVE-2007-1030: improve libevent entry


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-07-09 19:27:06 UTC (rev 6125)
+++ data/CVE/list	2007-07-10 11:43:36 UTC (rev 6126)
@@ -6058,8 +6058,7 @@
 CVE-2007-1031 (Directory traversal vulnerability in include/db_conn.php in SpoonLabs ...)
 	NOT-FOR-US: Vivvo Article Management CMS
 CVE-2007-1030 (Niels Provos libevent 1.2 and 1.2a allows remote attackers to cause a ...)
-	- libevent 1.3b-0 (bug #411996; unimportant)
-	NOTE: Only versions 1.2 and 1.2a are vulnerable -- 1.1a-1 is safe.
+	- libevent <not-affected> (vulnerable version 1.2 was never uploaded)
 CVE-2007-1029 (Stack-based buffer overflow in the Connect method in the IMAP4 ...)
 	NOT-FOR-US: Quiksoft EasyMail Objects
 CVE-2007-1028 (Cross-site scripting (XSS) vulnerability in the Barry Jaspan Image ...)




More information about the Secure-testing-commits mailing list