[Secure-testing-commits] r12673 - data/CVE
Giuseppe Iuculano
derevko-guest at alioth.debian.org
Mon Aug 24 19:34:25 UTC 2009
Author: derevko-guest
Date: 2009-08-24 19:34:25 +0000 (Mon, 24 Aug 2009)
New Revision: 12673
Modified:
data/CVE/list
Log:
CVE-2009-1885 fixed in xerces-c2 2.8.0+deb1-2
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2009-08-24 19:00:47 UTC (rev 12672)
+++ data/CVE/list 2009-08-24 19:34:25 UTC (rev 12673)
@@ -3028,7 +3028,7 @@
NOTE: Only the 3.2.x branch was affected, so marking 3.3 as affected
CVE-2009-1885 (Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in ...)
- xerces-c 3.0.1-2 (low; bug #540297)
- - xerces-c2 <unfixed> (low; bug #541986)
+ - xerces-c2 2.8.0+deb1-2 (low; bug #541986)
- xerces27 <removed>
CVE-2009-1884 (Off-by-one error in the bzinflate function in Bzip2.xs in the ...)
- libcompress-raw-bzip2-perl <unfixed> (medium; bug #542777)
More information about the Secure-testing-commits
mailing list