[Secure-testing-commits] r10240 - in data: . CVE

white at alioth.debian.org white at alioth.debian.org
Sun Nov 2 11:43:48 UTC 2008


Author: white
Date: 2008-11-02 11:43:47 +0000 (Sun, 02 Nov 2008)
New Revision: 10240

Modified:
   data/CVE/list
   data/spu-candidates.txt
Log:
Add new dia issue; only vulnerable when called from certain dir, so no-dsa

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-11-02 11:25:24 UTC (rev 10239)
+++ data/CVE/list	2008-11-02 11:43:47 UTC (rev 10240)
@@ -1,3 +1,6 @@
+CVE-2008-XXXX [dia: Python scripts load modules from current directory]
+	- dia <unfixed> (low; bug #504251)
+	[etch] - dia <no-dsa> (Minor issue, only vulnerable when called from certain dir)
 CVE-2008-XXXX [virtualbox-ose: insecure temp file usage]
 	- virtualbox-ose <unfixed> (low; bug #504149)
 CVE-2008-XXXX [DoS in getbulk handling code in net-snmp]

Modified: data/spu-candidates.txt
===================================================================
--- data/spu-candidates.txt	2008-11-02 11:25:24 UTC (rev 10239)
+++ data/spu-candidates.txt	2008-11-02 11:43:47 UTC (rev 10240)
@@ -99,6 +99,11 @@
 
 --
 
+dia
+#504251
+
+--
+
 digitaldj
 #496399
 notified maintainer




More information about the Secure-testing-commits mailing list