[Secure-testing-commits] r11722 - data/CVE

Joey Hess joeyh at alioth.debian.org
Sun Apr 26 21:14:17 UTC 2009


Author: joeyh
Date: 2009-04-26 21:14:16 +0000 (Sun, 26 Apr 2009)
New Revision: 11722

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-04-26 21:03:10 UTC (rev 11721)
+++ data/CVE/list	2009-04-26 21:14:16 UTC (rev 11722)
@@ -65,7 +65,6 @@
 CVE-2009-1363
 	RESERVED
 CVE-2009-1360 (The __inet6_check_established function in net/ipv6/inet6_hashtables.c ...)
-	RESERVED
 	- linux-2.6 2.6.29-1
 	[etch] - linux-2.6 <not-affected> (Introduced in 2.6.27)
 	- linux-2.6.24 <not-affected> (Introduced in 2.6.27)
@@ -166,6 +165,7 @@
 CVE-2006-7238 (Cross-site scripting (XSS) vulnerability in MyShoutPro before 1.2 ...)
 	NOT-FOR-US: MyShoutPro
 CVE-2009-1358 (apt-get in apt before 0.7.21 does not check for the correct error code ...)
+	{DSA-1779-1}
 	- apt 0.7.21 (bug #433091)
 CVE-2009-XXXX [amule improper path sanitization]
 	- amule <unfixed> (low; bug #525078)
@@ -311,6 +311,7 @@
 	NOTE: unlike secunia states I can't see that this allows code execution but is just an invalid read
 	NOTE: crashing the application
 CVE-2009-1300 (apt 0.7.20 does not check when the date command returns an &quot;invalid ...)
+	{DSA-1779-1}
 	- apt 0.7.21 (bug #523213)
 CVE-2008-6726 (Multiple directory traversal vulnerabilities in CMScout 2.06, when ...)
 	NOT-FOR-US: CMScout
@@ -341,6 +342,7 @@
 CVE-2008-6721 (SQL injection vulnerability in index.php in AJ Square AJ Article ...)
 	NOT-FOR-US: AJ Square AJ Article
 CVE-2009-1371 (The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before ...)
+	{DSA-1771-1}
 	- clamav 0.95.1+dfsg-1
 	NOTE: https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1552
 CVE-2009-1372 (Stack-based buffer overflow in the cli_url_canon function in ...)




More information about the Secure-testing-commits mailing list