[Secure-testing-commits] r9347 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Wed Jul 16 14:17:21 UTC 2008


Author: nion
Date: 2008-07-16 14:17:20 +0000 (Wed, 16 Jul 2008)
New Revision: 9347

Modified:
   data/CVE/list
Log:
CVE-2008-2933, CVE-2008-2785 fixed in iceweasel 3.0.1-1


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-07-16 13:59:24 UTC (rev 9346)
+++ data/CVE/list	2008-07-16 14:17:20 UTC (rev 9347)
@@ -515,8 +515,10 @@
 	RESERVED
 CVE-2008-2934
 	RESERVED
-CVE-2008-2933
+CVE-2008-2933 [command line urls can launch multiple tabs when firefox is not running]
 	RESERVED
+	- iceweasel 3.0.1-1 (low)
+	NOTE: http://www.mozilla.org/security/announce/2008/mfsa2008-35.html
 CVE-2008-2932
 	RESERVED
 CVE-2008-2931 (The do_change_type function in fs/namespace.c in the Linux kernel ...)
@@ -928,7 +930,10 @@
 CVE-2008-2786 (Buffer overflow in Firefox 3.0 and 2.0.x has unknown impact and attack ...)
 	- iceweasel <unfixed> (bug #488358)
 CVE-2008-2785 (Unspecified vulnerability in Firefox 3.0 and 2.0.x has unknown impact ...)
-	- iceweasel <unfixed> (bug #488358)
+	- iceweasel 3.0.1-1 (medium; bug #488358)
+	- icedove <unfixed>
+	- iceape <unfixed>
+	NOTE: http://www.mozilla.org/security/announce/2008/mfsa2008-34.html
 CVE-2008-2784 (The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT ...)
 	NOT-FOR-US: spamdyke
 CVE-2008-2783 (Multiple cross-site scripting (XSS) vulnerabilities in Horde ...)




More information about the Secure-testing-commits mailing list