[Secure-testing-commits] r5578 - data/CVE

Florian Weimer fw at alioth.debian.org
Sat Mar 24 10:52:29 CET 2007


Author: fw
Date: 2007-03-24 09:52:27 +0000 (Sat, 24 Mar 2007)
New Revision: 5578

Modified:
   data/CVE/list
Log:
CVE-2007-1536: file


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-03-24 09:14:12 UTC (rev 5577)
+++ data/CVE/list	2007-03-24 09:52:27 UTC (rev 5578)
@@ -107,7 +107,9 @@
 CVE-2007-1537 (\Device\NdisTapi (NDISTAPI.sys) in Microsoft Windows XP SP2 and 2003 ...)
 	TODO: check
 CVE-2007-1536 (Integer underflow in the file_printf function in the "file" program ...)
-	TODO: check
+	- file 4.20-1 (bug #415362; high)
+	NOTE: Has got lots of reverse dependencies.
+ 	NOTE: Some of them process remotely supplied untrusted input.
 CVE-2007-1535 (Microsoft Windows Vista establishes a Teredo address without user ...)
 	TODO: check
 CVE-2007-1534 (DFSR.exe in Windows Meeting Space in Microsoft Windows Vista remains ...)




More information about the Secure-testing-commits mailing list