[Secure-testing-commits] r7332 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Sat Nov 17 06:44:43 UTC 2007


Author: white
Date: 2007-11-17 06:44:42 +0000 (Sat, 17 Nov 2007)
New Revision: 7332

Modified:
   data/CVE/list
Log:
NFUs; old pcre3 issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-11-16 22:42:11 UTC (rev 7331)
+++ data/CVE/list	2007-11-17 06:44:42 UTC (rev 7332)
@@ -1,53 +1,54 @@
 CVE-2007-6011 (Unspecified vulnerability in main.php of BugHotel Reservation System ...)
-	TODO: check
+	NOT-FOR-US: BugHotel
 CVE-2007-6010 (Unspecified vulnerability in pioneers (formerly gnocatan) 0.11.3 ...)
 	TODO: check
 CVE-2007-6009 (Multiple buffer overflows in ACD products allow user-assisted remote ...)
-	TODO: check
+	NOT-FOR-US: ACD products
 CVE-2007-6008 (Heap-based buffer overflow in emlsr.dll before 2.0.0.4 in Autonomy ...)
-	TODO: check
+	NOT-FOR-US: Autonomy
 CVE-2007-6007 (Integer overflow in the ID_PSP.apl plug-in for ACD ACDSee Photo ...)
-	TODO: check
+	NOT-FOR-US: Pro Photo Manager
 CVE-2007-6006 (TestLink before 1.7.1 does not enforce an unspecified authorization ...)
-	TODO: check
+	NOT-FOR-US: TestLink	
 CVE-2007-6005 (Unspecified vulnerability in the GpcContainer.GpcContainer.1 ActiveX ...)
-	TODO: check
+	NOT-FOR-US: WebEx
 CVE-2007-6004 (Multiple SQL injection vulnerabilities in index.php in Toko Instan 7.6 ...)
-	TODO: check
+	NOT-FOR-US: Toko Instan
 CVE-2007-6003 (Cross-site scripting (XSS) vulnerability in cgi/b/ic/connect in the ...)
-	TODO: check
+	NOT-FOR-US: SpeedTouch
 CVE-2007-6002 (Cross-site scripting (XSS) vulnerability in Fenriru (1) Sleipnir ...)
-	TODO: check
+	NOT-FOR-US: Fenriru
 CVE-2007-6001 (Multiple cross-site scripting (XSS) vulnerabilities in index.php in ...)
 	TODO: check
 CVE-2007-6000 (KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a ...)
 	TODO: check
 CVE-2007-5999 (SQL injection vulnerability in product_desc.php in Softbiz Auctions ...)
-	TODO: check
+	NOT-FOR-US: Softbiz
 CVE-2007-5998 (SQL injection vulnerability in ads.php in Softbiz Ad Management plus ...)
-	TODO: check
+	NOT-FOR-US: Softbiz
 CVE-2007-5997 (SQL injection vulnerability in campaign_stats.php in Softbiz Banner ...)
-	TODO: check
+	NOT-FOR-US: Softbiz Banner Exchange Network Script
 CVE-2007-5996 (SQL injection vulnerability in searchresult.php in Softbiz Link ...)
-	TODO: check
+	NOT-FOR-US: Softbiz Link Directory Script
 CVE-2007-5995 (PHP remote file inclusion vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: patBBcode
 CVE-2007-5994 (PHP remote file inclusion vulnerability in check_noimage.php in Fritz ...)
-	TODO: check
+	NOT-FOR-US: php photo album
 CVE-2007-5993 (Cross-site scripting (XSS) vulnerability in Visionary Technology in ...)
-	TODO: check
+	NOT-FOR-US: vtls
 CVE-2007-5992 (SQL injection vulnerability in index.php in datecomm Social Networking ...)
-	TODO: check
+	NOT-FOR-US: Social Networking Script
 CVE-2007-5991 (SQL injection vulnerability in index.php in ExoPHPdesk allows remote ...)
-	TODO: check
+	NOT-FOR-US: ExoPHPdesk
 CVE-2007-5990 (Cross-site scripting (XSS) vulnerability in ExoPHPdesk allows remote ...)
-	TODO: check
+	NOT-FOR-US: ExoPHPdesk
 CVE-2006-7230 (Perl-Compatible Regular Expression (PCRE) library before 7.0 does not ...)
-	TODO: check
+	- pcre3 7.0-1
+	NOTE: Documented in http://www.pcre.org/changelog.txt
 CVE-2004-2755 (Cross-site scripting (XSS) vulnerability in Symantec Web Security 2.5, ...)
-	TODO: check
+	NOT-FOR-US: Symantec Web Security
 CVE-2004-2754 (SQL injection vulnerability in SSI.php in YaBB SE 1.5.4, 1.5.3, and ...)
-	TODO: check
+	NOT-FOR-US: YaBB
 CVE-2007-5989
 	RESERVED
 CVE-2007-5988 (blocks/shoutbox_block.php in BtiTracker 1.4.4 does not verify user ...)




More information about the Secure-testing-commits mailing list