[Secure-testing-commits] r10621 - data/CVE

jmm-guest at alioth.debian.org jmm-guest at alioth.debian.org
Thu Dec 4 21:36:54 UTC 2008


Author: jmm-guest
Date: 2008-12-04 21:36:53 +0000 (Thu, 04 Dec 2008)
New Revision: 10621

Modified:
   data/CVE/list
Log:
new lcms issues already fixed in Lenny


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-12-04 21:28:31 UTC (rev 10620)
+++ data/CVE/list	2008-12-04 21:36:53 UTC (rev 10621)
@@ -3,7 +3,7 @@
 CVE-2008-5322 (Wysi Wiki Wyg 1.0 allows remote attackers to obtain system information ...)
 	NOT-FOR-US: Wysi Wiki Wyg
 CVE-2008-5321 (SQL injection vulnerability in index.php in GesGaleri, a module for ...)
-	TODO: check
+	NOT-FOR-US: XOOPS module
 CVE-2008-5320 (SQL injection vulnerability in usersettings.php in e107 0.7.13 and ...)
 	NOT-FOR-US: e107
 CVE-2008-5319 (Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact ...)
@@ -11,9 +11,9 @@
 CVE-2008-5318 (Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact ...)
 	- tikiwiki <removed>
 CVE-2008-5317 (Integer signedness error in the cmsAllocGamma function in ...)
-	TODO: check
+	- lcms 1.17-1
 CVE-2008-5316 (Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in ...)
-	TODO: check
+	- lcms 1.16-1
 CVE-2008-5315 (Directory traversal vulnerability in the web interface in Apple iPhone ...)
 	NOT-FOR-US: Apple iPhone Configuration Web Utility
 CVE-2008-XXXX [multiple insecure tempfiles usage issues in devscripts]




More information about the Secure-testing-commits mailing list