[Secure-testing-commits] r10182 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Mon Oct 27 12:50:14 UTC 2008


Author: white
Date: 2008-10-27 12:50:13 +0000 (Mon, 27 Oct 2008)
New Revision: 10182

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-10-27 12:46:29 UTC (rev 10181)
+++ data/CVE/list	2008-10-27 12:50:13 UTC (rev 10182)
@@ -1107,7 +1107,7 @@
 CVE-2008-4251
 	RESERVED
 CVE-2008-4250 (The Server service in Microsoft Windows 2000 SP4, XP SP2 and SP3, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft Windows 
 CVE-2008-4249
 	RESERVED
 CVE-2008-4248
@@ -1402,7 +1402,7 @@
 CVE-2008-4122
 	RESERVED
 CVE-2008-4121 (Multiple cross-site scripting (XSS) vulnerabilities in cpCommerce ...)
-	TODO: check
+	NOT-FOR-US: cpCommerce
 CVE-2008-4120 (Multiple cross-site scripting (XSS) vulnerabilities in FlatPress 0.804 ...)
 	NOT-FOR-US: FlatPress
 CVE-2008-4119 (Multiple cross-site scripting (XSS) vulnerabilities in CA Service Desk ...)
@@ -2043,7 +2043,7 @@
 CVE-2008-3863 (Stack-based buffer overflow in the read_special_escape function in ...)
 	TODO: check
 CVE-2008-3862 (Stack-based buffer overflow in CGI programs in the server in Trend ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro OfficeScan
 CVE-2008-3861 (Multiple SQL injection vulnerabilities in phpMyRealty (PMR) 1.0.9 and ...)
 	NOT-FOR-US: phpMyRealty
 CVE-2008-3860 (Multiple cross-site scripting (XSS) vulnerabilities (1) in the WYSIWYG ...)
@@ -2181,11 +2181,11 @@
 CVE-2008-3818
 	RESERVED
 CVE-2008-3817 (Memory leak in Cisco Adaptive Security Appliances (ASA) 5500 Series ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2008-3816 (Unspecified vulnerability in Cisco Adaptive Security Appliances (ASA) ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2008-3815 (Unspecified vulnerability in Cisco Adaptive Security Appliances (ASA) ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2008-3814 (Unspecified vulnerability in Cisco Unity 4.x before 4.2(1)ES161, 5.x ...)
 	NOT-FOR-US: Cisco
 CVE-2008-3813 (Unspecified vulnerability in Cisco IOS 12.2 and 12.4, when the L2TP ...)
@@ -3594,7 +3594,7 @@
 CVE-2008-3249 (The client in Lenovo System Update before 3.14 does not properly ...)
 	NOT-FOR-US: Lenovo System Update
 CVE-2008-3248 (qiomkfile in the Quick I/O for Database feature in Symantec Veritas ...)
-	TODO: check
+	NOT-FOR-US: Symantec Veritas File System on HP-UX
 CVE-2008-3247 (The LDT implementation in the Linux kernel 2.6.25.x before 2.6.25.11 ...)
 	- linux-2.6 2.6.25-7
 	[etch] - linux-2.6 <not-affected> (2.6.25-only issue)
@@ -17882,9 +17882,9 @@
 	- cups 1.3.4-1 (medium; bug #448866)
 	[sarge] - cupsys <not-affected> (Only vulnerable to code injection since 1.2.x, effects are harmless otherwise)
 CVE-2007-4350 (Cross-site scripting (XSS) vulnerability in the management interface ...)
-	TODO: check
+	NOT-FOR-US: HP SiteScope
 CVE-2007-4349 (The Shared Trace Service (aka OVTrace) in HP OpenView Report 3.70 and ...)
-	TODO: check
+	NOT-FOR-US: HP OpenView Report
 CVE-2007-4348 (Cross-site scripting (XSS) vulnerability in the CAD service in IBM ...)
 	NOT-FOR-US: IBM Tivoli Storage Manager
 CVE-2007-4347 (Multiple integer overflows in the Job Engine (bengine.exe) service in ...)




More information about the Secure-testing-commits mailing list