[Secure-testing-commits] r9334 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Tue Jul 15 12:04:48 UTC 2008


Author: white
Date: 2008-07-15 12:04:47 +0000 (Tue, 15 Jul 2008)
New Revision: 9334

Modified:
   data/CVE/list
Log:
clamav issue unfixed (fix was incomplete)

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-07-15 11:13:34 UTC (rev 9333)
+++ data/CVE/list	2008-07-15 12:04:47 UTC (rev 9334)
@@ -992,7 +992,8 @@
 	NOTE: http://dev.robotbattle.com/cgi-bin/viewvc.cgi/exiv2/trunk/src/nikonmn.cpp?r1=1473&r2=1499
 CVE-2008-2713 (libclamav/petite.c in ClamAV before 0.93.1 allows remote attackers to ...)
 	{DTSA-138-1}
-	- clamav 0.93.1.dfsg-1 (low)
+	- clamav <unfixed> (low; bug #490925)
+	NOTE: fix was incomplete, see http://www.openwall.com/lists/oss-security/2008/07/15/1
 CVE-2008-2711 (fetchmail 6.3.8 and earlier, when running in -v -v (aka verbose) mode, ...)
 	- fetchmail 6.3.9~rc2-1 (unimportant)
 	NOTE: http://www.openwall.com/lists/oss-security/2008/06/13/1




More information about the Secure-testing-commits mailing list