[Secure-testing-commits] r10656 - data/CVE

joeyh at alioth.debian.org joeyh at alioth.debian.org
Sun Dec 7 21:14:12 UTC 2008


Author: joeyh
Date: 2008-12-07 21:14:11 +0000 (Sun, 07 Dec 2008)
New Revision: 10656

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-12-07 18:57:04 UTC (rev 10655)
+++ data/CVE/list	2008-12-07 21:14:11 UTC (rev 10656)
@@ -7088,6 +7088,7 @@
 CVE-2008-2380
 	RESERVED
 CVE-2008-2379 (Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 ...)
+	{DSA-1682-1}
 	- squirrelmail 2:1.4.15-4
 CVE-2008-2378 (Untrusted search path vulnerability in hfkernel in hf 0.7.3 and 0.8 ...)
 	{DSA-1668-1}
@@ -38290,7 +38291,7 @@
 CVE-2006-3402 (SQL injection vulnerability in VirtuaStore 2.0 allows remote attackers ...)
 	NOT-FOR-US: VirtuaStore
 CVE-2006-3401 (Stack-based buffer overflow in Quake 3 Engine as used by Quake 3: ...)
- 	NOT-FOR-US: Quake 3
+	NOT-FOR-US: Quake 3
 CVE-2006-3400 (Stack-based buffer overflow in the CG_ServerCommand function in Quake ...)
 	NOT-FOR-US: Soldier of Fortune 2
 CVE-2006-3399 (Cross-site scripting (XSS) vulnerability in wiki.php in MoniWiki ...)
@@ -38468,9 +38469,9 @@
 CVE-2006-3326 (Directory traversal vulnerability in QuickZip 3.06.3 allows remote ...)
 	NOT-FOR-US: QuickZip
 CVE-2006-3325 (client/cl_parse.c in the id3 Quake 3 Engine 1.32c and the Icculus ...)
- 	NOT-FOR-US: Quake 3
+	NOT-FOR-US: Quake 3
 CVE-2006-3324 (The Automatic Downloading option in the id3 Quake 3 Engine and the ...)
- 	NOT-FOR-US: Quake 3
+	NOT-FOR-US: Quake 3
 CVE-2006-3323 (PHP remote file inclusion vulnerability in admin/admin.php in MF ...)
 	NOT-FOR-US: MF Piadas
 CVE-2006-3322 (SQL injection vulnerability in includes/functions_logging.php in ...)
@@ -39444,7 +39445,7 @@
 CVE-2006-2876 (Cross-site scripting (XSS) vulnerability in cat.php in PHP Pro Publish ...)
 	NOT-FOR-US: PHP Pro Publish
 CVE-2006-2875 (Stack-based buffer overflow in the CL_ParseDownload function of Quake ...)
- 	NOT-FOR-US: Quake 3
+	NOT-FOR-US: Quake 3
 CVE-2006-2874 (Unspecified vulnerability in OSADS Alliance Database before 1.4 has ...)
 	NOT-FOR-US: OSADS
 CVE-2006-2873 (Cross-site scripting (XSS) vulnerability in hava.asp in Enigma Haber ...)
@@ -40947,7 +40948,7 @@
 	{DSA-1058-1}
 	- awstats 6.5-2 (bug #365909; bug #365910; medium)
 CVE-2006-2236 (Buffer overflow in the Quake 3 Engine, as used by (1) ET 2.60, (2) ...)
- 	NOT-FOR-US: Quake 3
+	NOT-FOR-US: Quake 3
 CVE-2006-2235 (CodeMunkyX (aka free-php.net) Simple Poll 1.0, when authentication is ...)
 	NOT-FOR-US: Simple Poll
 CVE-2006-2234 (Multiple cross-site scripting (XSS) vulnerabilities in TyroCMS beta ...)
@@ -41303,7 +41304,7 @@
 	[sarge] - rsync <not-affected> (xattr patch appeared in 2.6.7)
 	[woody] - rsync <not-affected> (xattr patch appeared in 2.6.7)
 CVE-2006-2082 (Directory traversal vulnerability in Quake 3 engine, as used in ...)
- 	NOT-FOR-US: Quake 3
+	NOT-FOR-US: Quake 3
 CVE-2006-2081 (Oracle Database Server 10g Release 2 allows local users to execute ...)
 	NOT-FOR-US: Oracle
 CVE-2006-2080 (SQL injection vulnerability in portfolio_photo_popup.php in Verosky ...)




More information about the Secure-testing-commits mailing list