[Secure-testing-commits] r9592 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Sat Aug 16 14:41:39 UTC 2008


Author: nion
Date: 2008-08-16 14:41:37 +0000 (Sat, 16 Aug 2008)
New Revision: 9592

Modified:
   data/CVE/list
Log:
CVE-2008-357{6,7} fixed in openttd 0.6.2-1

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-08-16 14:32:24 UTC (rev 9591)
+++ data/CVE/list	2008-08-16 14:41:37 UTC (rev 9592)
@@ -196,9 +196,10 @@
 CVE-2008-3578 (HydraIRC 0.3.164 and earlier allows remote attackers to cause a denial ...)
 	NOT-FOR-US: HydraIRC
 CVE-2008-3577 (Buffer overflow in src/openttd.cpp in OpenTTD before 0.6.2 allows ...)
-	TODO: check
+	- openttd 0.6.2-1 (unimportant)
+	NOTE: no vulnerability at all, not exploitable remote or local, openttd
 CVE-2008-3576 (Buffer overflow in the TruncateString function in src/gfx.cpp in ...)
-	TODO: check
+	- openttd 0.6.2-1
 CVE-2008-3575 (PHP remote file inclusion vulnerability in ...)
 	NOT-FOR-US: ezContents CMS
 CVE-2008-3574 (Multiple cross-site scripting (XSS) vulnerabilities in Pluck 4.5.2, ...)




More information about the Secure-testing-commits mailing list