[Secure-testing-commits] r10291 - in data: . CVE

nion at alioth.debian.org nion at alioth.debian.org
Wed Nov 5 22:21:07 UTC 2008


Author: nion
Date: 2008-11-05 22:21:06 +0000 (Wed, 05 Nov 2008)
New Revision: 10291

Modified:
   data/CVE/list
   data/embedded-code-copies
Log:
fix broken embedded-code-copies entry for gadu, ekg also affected by CVE-2008-4776 and fixed in 1:1.8~rc0-1


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-11-05 22:16:12 UTC (rev 10290)
+++ data/CVE/list	2008-11-05 22:21:06 UTC (rev 10291)
@@ -384,6 +384,8 @@
 CVE-2008-4776 (libgadu before 1.8.2 allows remote servers to cause a denial of ...)
 	- libgadu 1:1.8.0+r592-3 (low; bug #503916)
 	- kadu 0.6.0.2-3 (low; bug #504429)
+	- ekg 1:1.8~rc0-1 (low)
+	TODO: check other embedding packages
 CVE-2008-4769 (Directory traversal vulnerability in the get_category_template ...)
 	- wordpress 2.5.1-1
 CVE-2008-4768 (SQL injection vulnerability in TLM CMS 3.1 allows remote attackers to ...)

Modified: data/embedded-code-copies
===================================================================
--- data/embedded-code-copies	2008-11-05 22:16:12 UTC (rev 10290)
+++ data/embedded-code-copies	2008-11-05 22:21:06 UTC (rev 10291)
@@ -81,17 +81,17 @@
 libbz2
 	- dpkg <unfixed> (static)
 
-ekg
+libgadu:
 	- centericq <unfixed> (embed)
 	- gaim <unfixed> (embed)
 	- pigdin <unfixed> (embed)(links dynamically against libgadu)
 	- kopete 4:3.3.2-5 (embed)
 	- kadu 0.6.0.2-3 (embed)
 	- gadu <unfixed> (embed)
+	- ekg 1:1.8~rc0-1 (embed)
+	- kadu <unfixed> (embed; bug #504430)
 	NOTE: gadu not packaged in Debian yet
 
-libgadu
-	- kadu <unfixed> (embed; bug #504430)
 xmlrpc (which package is the "origin" of this code?)
 	- drupal <unfixed> (embed)
 	- phpgroupware <unfixed> (embed)




More information about the Secure-testing-commits mailing list