[Secure-testing-commits] r9003 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Fri Jun 6 14:37:56 UTC 2008


Author: nion
Date: 2008-06-06 14:37:54 +0000 (Fri, 06 Jun 2008)
New Revision: 9003

Modified:
   data/CVE/list
Log:
new issue: asterisk-oh323, needs further analysis

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-06-06 14:26:15 UTC (rev 9002)
+++ data/CVE/list	2008-06-06 14:37:54 UTC (rev 9003)
@@ -32,7 +32,9 @@
 CVE-2008-2544
 	RESERVED
 CVE-2008-2543 (The ooh323 channel driver in Asterisk Addons 1.2.x before 1.2.9 and ...)
-	TODO: check
+	- asterisk-oh323 <unfixed> (bug #484796)
+	NOTE: codebase completely changed, hard to tell if affected or not
+	NOTE: marking as unfixed for now and told maintainer to check back with upstream
 CVE-2008-2542 (Stack-based buffer overflow in the getline function in Ppm/ppm.C in ...)
 	NOT-FOR-US: NASA Ames Research Center BigView
 CVE-2008-2541 (Multiple stack-based buffer overflows in the HTTP Gateway Service ...)




More information about the Secure-testing-commits mailing list