[Secure-testing-commits] r9812 - data/CVE

white at alioth.debian.org white at alioth.debian.org
Sun Sep 14 09:27:37 UTC 2008


Author: white
Date: 2008-09-14 09:27:36 +0000 (Sun, 14 Sep 2008)
New Revision: 9812

Modified:
   data/CVE/list
Log:
ampache CVEified

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-09-14 09:26:21 UTC (rev 9811)
+++ data/CVE/list	2008-09-14 09:27:36 UTC (rev 9812)
@@ -165,7 +165,9 @@
 CVE-2008-3930 (migrate_aliases.sh in Citadel Server 7.37 allows local users to ...)
 	- citadel 7.37-3 (low; bug #496359)
 CVE-2008-3929 (gather-messages.sh in Ampache 3.4.1 allows local users to overwrite ...)
-	TODO: check
+	- ampache <unfixed> (unimportant; bug #496369)
+	NOTE: Tracking as unimportant, since the script is only used
+	NOTE: when translating ampache to a new language
 CVE-2008-3928 (test.sh in Honeyd 1.5c might allow local users to overwrite arbitrary ...)
 	TODO: check
 CVE-2008-3927 (genmsgidx in Tiger 3.2.2 allows local users to overwrite or delete ...)
@@ -625,10 +627,6 @@
 	- tiger 1:3.2.2-4 (unimportant; bug #496415)
 	NOTE: Tracking as unimportant, since the script is only used
 	NOTE: during build time
-CVE-2008-XXXX [ampache: insecure temp file in locale generation script]
-	- ampache <unfixed> (unimportant; bug #496369)
-	NOTE: Tracking as unimportant, since the script is only used
-	NOTE: when translating ampache to a new language
 CVE-2008-XXXX [rkhunter: insecure temp file]
 	- rkhunter 1.3.2-6 (low; bug #496375)
 CVE-2008-XXXX [scratchbox2: insecure temp file]




More information about the Secure-testing-commits mailing list