[Secure-testing-commits] r6591 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Wed Sep 12 10:11:26 UTC 2007


Author: white
Date: 2007-09-12 10:11:25 +0000 (Wed, 12 Sep 2007)
New Revision: 6591

Modified:
   data/CVE/list
Log:
NFU: AIX kernel extension, 3 php5 issues (severity=low)

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-09-12 10:05:32 UTC (rev 6590)
+++ data/CVE/list	2007-09-12 10:11:25 UTC (rev 6591)
@@ -3,7 +3,7 @@
 CVE-2007-4800
 	RESERVED
 CVE-2007-4799 (The perfstat kernel extension in bos.perf.perfstat in AIX 5.3 does not ...)
-	TODO: check
+	NOT-FOR-US: AIX perfstat kernel extension
 CVE-2007-4798 (Unspecified vulnerability in invscout in Inventory Scout in ...)
 	NOT-FOR-US: invscout
 CVE-2007-4797 (Multiple buffer overflows in unspecified svprint (System V print) ...)
@@ -33,11 +33,11 @@
 CVE-2007-4785 (Sony Micro Vault Fingerprint Access Software, as distributed with Sony ...)
 	NOT-FOR-US: Sony Micro Vault
 CVE-2007-4784 (The setlocale function in PHP before 5.2.4 allows context-dependent ...)
-	TODO: check
+	- php5 <unfixed> (low)
 CVE-2007-4783 (The iconv_substr function in PHP 5.2.4 and earlier allows ...)
-	TODO: check
+	- php5 <unfixed> (low)
 CVE-2007-4782 (PHP before 5.2.3 allows context-dependent attackers to cause a denial ...)
-	TODO: check
+	- php5 <unfixed> (low)
 CVE-2007-4781 (administrator/index.php in the installer component (com_installer) in ...)
 	NOT-FOR-US: Joomla
 CVE-2007-4780 (Joomla! 1.5 before RC2 (aka Endeleo) allows remote attackers to obtain ...)




More information about the Secure-testing-commits mailing list