[Secure-testing-commits] r10956 - data/CVE

jmm-guest at alioth.debian.org jmm-guest at alioth.debian.org
Wed Jan 14 20:44:24 UTC 2009


Author: jmm-guest
Date: 2009-01-14 20:44:23 +0000 (Wed, 14 Jan 2009)
New Revision: 10956

Modified:
   data/CVE/list
Log:
- kernel updates
- fix dbus entry (don't commit fixes from experimental w/o a tag)



Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-01-14 20:29:32 UTC (rev 10955)
+++ data/CVE/list	2009-01-14 20:44:23 UTC (rev 10956)
@@ -174,7 +174,7 @@
 CVE-2009-0066 (Multiple unspecified vulnerabilities in Intel system software for ...)
 	TODO: will be presented at Black Hat
 CVE-2009-0065 (Buffer overflow in net/sctp/sm_statefuns.c in the Stream Control ...)
-	- linux-2.6 <unfixed>
+	- linux-2.6 2.6.26-14
 	- linux-2.6.24 <removed>
 CVE-2009-0064
 	RESERVED
@@ -587,6 +587,7 @@
 	- linux-2.6.24 <removed>
 CVE-2008-5700 (libata in the Linux kernel before 2.6.27.9 does not set minimum ...)
 	- linux-2.6 2.6.26-13
+	[etch] - linux-2.6 <not-affected> (Vulnerable code not present, was introduced later)
 	- linux-2.6.24 <removed>
 CVE-2008-5699 (The name service cache daemon (nscd) in Sun Solaris 10 and OpenSolaris ...)
 	NOT-FOR-US: Solaris
@@ -3998,7 +3999,7 @@
 CVE-2008-4312
 	RESERVED
 CVE-2008-4311 (The default configuration of system.conf in D-Bus (aka DBus) before ...)
-	- dbus 1.2.8-1 (bug #508032)
+	- dbus 1.2.1-5 (bug #508032)
 CVE-2008-4310 (httputils.rb in WEBrick in Ruby 1.8.1 and 1.8.5, as used in Red Hat ...)
 	- ruby <not-affected> (bug #508030)
 	NOTE: Red Hat-specific
@@ -4009,7 +4010,7 @@
 	RESERVED
 CVE-2008-4307 [kernel: BUG() in locks_remove_flock]
 	RESERVED
-	- linux-2.6 <unfixed>
+	- linux-2.6 2.6.26-1
 	- linux-2.6.24 <removed>
 CVE-2008-4306 (Buffer overflow in enscript before 1.6.4 has unknown impact and attack ...)
 	{DSA-1670-1}




More information about the Secure-testing-commits mailing list