[Secure-testing-commits] r6616 - in data: CVE NMU

nion at alioth.debian.org nion at alioth.debian.org
Sun Sep 16 17:33:19 UTC 2007


Author: nion
Date: 2007-09-16 17:33:18 +0000 (Sun, 16 Sep 2007)
New Revision: 6616

Modified:
   data/CVE/list
   data/NMU/list
Log:
CVE-2007-4755 and CVE-2007-4754 fixed in alien-arena 6.05-4.1
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2007-09-15 15:28:12 UTC (rev 6615)
+++ data/CVE/list	2007-09-16 17:33:18 UTC (rev 6616)
@@ -294,9 +294,9 @@
 CVE-2007-4756 (Directory traversal vulnerability in the FTP client in Total Commander ...)
 	NOT-FOR-US: Total Commander
 CVE-2007-4755 (Alien Arena 2007 6.10 and earlier allows remote attackers to cause a ...)
-	- alien-arena <unfixed> (low; bug #442075)
+	- alien-arena 6.05-4.1 (low; bug #442075)
 CVE-2007-4754 (Format string vulnerability in the safe_bprintf function in ...)
-	- alien-arena <unfixed> (medium; bug #442075)
+	- alien-arena 6.05-4.1 (medium; bug #442075)
 CVE-2007-4753 (The Thomson ST 2030 SIP phone with software 1.52.1 allows remote ...)
 	NOT-FOR-US: Thomson ST 2030 SIP phone
 CVE-2007-4751
@@ -304,7 +304,7 @@
 CVE-2007-4750
 	RESERVED
 CVE-2007-4749 (The cmdjob utility in Autodesk Backburner 3.0.2 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Autodesk Backburner
 CVE-2007-4752 (ssh in OpenSSH before 4.7 does not properly handle when an untrusted ...)
 	- openssh <unfixed> (low)
 	[etch] - openssh <no-dsa> (minor issue in weak security measure)
@@ -2245,7 +2245,7 @@
 CVE-2007-3872 (Multiple stack-based buffer overflows in the Shared Trace Service ...)
 	NOT-FOR-US: HP OpenView
 CVE-2007-3871 (Stampit Web uses guessable id values for online stamp purchases, which ...)
-	TODO: check
+	NOT-FOR-US: Stampit
 CVE-2006-7221 (Multiple off-by-one errors in fsplib.c in fsplib before 0.8 allow ...)
 	- gftp <unfixed> (unimportant; bug #437710)
 	NOTE: Only a crasher, w/o security impact for a client application like gftp
@@ -4271,7 +4271,7 @@
 CVE-2007-3041 (Unspecified vulnerability in the pdwizard.ocx ActiveX object for ...)
 	NOT-FOR-US: Microsoft
 CVE-2007-3040 (Stack-based buffer overflow in agentdpv.dll 2.0.0.3425 in Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Windows
 CVE-2007-3039
 	RESERVED
 CVE-2007-3038 (The Teredo interface in Microsoft Windows Vista and Vista x64 Edition ...)
@@ -4279,7 +4279,7 @@
 CVE-2007-3037 (Microsoft Windows Media Player 7.1, 9, 10, and 11 allows remote ...)
 	NOT-FOR-US: Microsoft
 CVE-2007-3036 (Unspecified vulnerability in the (1) Windows Services for UNIX 3.0 and ...)
-	TODO: check
+	NOT-FOR-US: Windows Services for UNIX
 CVE-2007-3035 (Unspecified vulnerability in Microsoft Windows Media Player 7.1, 9, ...)
 	NOT-FOR-US: Microsoft
 CVE-2007-3034 (Integer overflow in the AttemptWrite function in Graphics Rendering ...)

Modified: data/NMU/list
===================================================================
--- data/NMU/list	2007-09-15 15:28:12 UTC (rev 6615)
+++ data/NMU/list	2007-09-16 17:33:18 UTC (rev 6616)
@@ -23,3 +23,4 @@
 2007-09-10 qgit 1.5.5-1.1
 2007-09-15 sylpheed-claws 1.0.5-5.2
 2007-09-15 weechat-scripts 20070425-0.1
+2007-09-16 alien-arena 6.05-4.1




More information about the Secure-testing-commits mailing list