[Secure-testing-commits] r8178 - data/CVE
thijs at alioth.debian.org
thijs at alioth.debian.org
Mon Feb 18 07:37:41 UTC 2008
Author: thijs
Date: 2008-02-18 07:37:40 +0000 (Mon, 18 Feb 2008)
New Revision: 8178
Modified:
data/CVE/list
Log:
add source bug# to apg issue, also no-dsa for sarge, non-reproducability
after recompile not reproducible
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2008-02-17 21:14:16 UTC (rev 8177)
+++ data/CVE/list 2008-02-18 07:37:40 UTC (rev 8178)
@@ -16548,9 +16548,9 @@
CVE-2007-XXXX [vserver patch allows renice of processes in different context]
- linux-2.6 2.6.18.dfsg.1-12 (bug #412143)
CVE-2007-XXXX [apg generates insecure passwords on 64-bit architectures]
- - apg 2.2.3.dfsg.1-2 (low)
+ - apg 2.2.3.dfsg.1-2 (low; bug #412618)
[etch] - apg <no-dsa> (Minor issue)
- NOTE: This is not reproducible after a recompile on amd64.
+ [sarge] - apg <no-dsa> (Minor issue)
CVE-2007-XXXX [mt-daapd remote access & default password]
- mt-daapd 0.9~r1586-1 (unimportant; bug #404640)
NOTE: User-unfriendly packaging flaw, but not a vulnerability per se
More information about the Secure-testing-commits
mailing list