[Secure-testing-commits] r7305 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Thu Nov 15 13:28:43 UTC 2007


Author: nion
Date: 2007-11-15 13:28:43 +0000 (Thu, 15 Nov 2007)
New Revision: 7305

Modified:
   data/CVE/list
Log:
NFUs
CVE-2007-5770 fixed in ruby1.9 1.9.0+20071016-1, unfixed in ruby1.8


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-11-15 12:53:50 UTC (rev 7304)
+++ data/CVE/list	2007-11-15 13:28:43 UTC (rev 7305)
@@ -55,17 +55,17 @@
 CVE-2006-7225
 	RESERVED
 CVE-2004-2753 (Unspecified vulnerability in SharedX in HP-UX B.11.00, B.11.11, and ...)
-	TODO: check
+	NOT-FOR-US: HP-UX
 CVE-2004-2752 (Cross-site scripting (XSS) vulnerability in the Downloads module in ...)
-	TODO: check
+	NOT-FOR-US: PostNuke
 CVE-2004-2751 (SQL injection vulnerability in the members_list module in PostNuke ...)
-	TODO: check
+	NOT-FOR-US: PostNuke
 CVE-2004-2750 (Directory traversal vulnerability in browser.php in JBrowser 1.0 ...)
-	TODO: check
+	NOT-FOR-US: JBrowser
 CVE-2004-2749 (Directory traversal vulnerability in wra/public/wralogin in 2Wire ...)
-	TODO: check
+	NOT-FOR-US: 2Wire Gateway
 CVE-2003-1537 (Directory traversal vulnerability in PostNuke 0.723 and earlier allows ...)
-	TODO: check
+	NOT-FOR-US: PostNuke
 CVE-2007-5932 (Multiple cross-site scripting (XSS) vulnerabilities in Fatwire Content ...)
 	NOT-FOR-US: Fatwire Content Server
 CVE-2007-5931 (The reDirect function in lib/controllers/RepViewController.php in ...)
@@ -426,7 +426,8 @@
 CVE-2007-5771 (Flatnuke 3 (aka FlatnuX) allows remote attackers to obtain ...)
 	NOT-FOR-US: Flatnuke
 CVE-2007-5770 (The (1) Net::ftptls, (2) Net::telnets, (3) Net::imap, (4) Net::pop, ...)
-	TODO: check
+	- ruby1.9 1.9.0+20071016-1
+	- ruby1.8 <unfixed> (low; bug #451374)
 CVE-2007-5769
 	RESERVED
 CVE-2007-5768 (The Globe7 soft phone client 7.3 sends username and password ...)




More information about the Secure-testing-commits mailing list