[Secure-testing-commits] r11116 - data/CVE

jamie-guest at alioth.debian.org jamie-guest at alioth.debian.org
Fri Jan 30 19:08:20 UTC 2009


Author: jamie-guest
Date: 2009-01-30 19:08:19 +0000 (Fri, 30 Jan 2009)
New Revision: 11116

Modified:
   data/CVE/list
Log:
NOT-FOR-US updates

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-01-30 16:35:55 UTC (rev 11115)
+++ data/CVE/list	2009-01-30 19:08:19 UTC (rev 11116)
@@ -1,3 +1,55 @@
+CVE-2009-0351
+	NOT-FOR-US: WinFTP
+CVE-2009-0350
+	NOT-FOR-US: Merak Media Player
+CVE-2009-0349
+	NOT-FOR-US: FTPShell Server
+CVE-2009-0348
+	NOT-FOR-US: Sun Java System Access Manager
+CVE-2009-0347
+	NOT-FOR-US: Autonomy (formerly Verity) Ultraseek search engine
+CVE-2009-0346
+	NOT-FOR-US: Sun Solaris
+CVE-2009-0345
+	NOT-FOR-US: Embedded Lights Out Manager (ELOM)
+CVE-2009-0344
+	NOT-FOR-US: Embedded Lights Out Manager (ELOM)
+CVE-2009-0341
+	NOT-FOR-US: Microsoft
+CVE-2009-0340
+	NOT-FOR-US: Simple PHP Newsletter
+CVE-2009-0339
+	NOT-FOR-US: DMXReady Blog Manager
+CVE-2009-0338
+	NOT-FOR-US: DMXReady Blog Manager
+CVE-2009-0337
+	NOT-FOR-US: Katy Whitton BlogIt!
+CVE-2009-0336
+	NOT-FOR-US: Katy Whitton BlogIt!
+CVE-2009-0335
+	NOT-FOR-US: Katy Whitton BlogIt!
+CVE-2009-0334
+	NOT-FOR-US: Katy Whitton BlogIt!
+CVE-2009-0333
+	NOT-FOR-US: Joomla!
+CVE-2009-0332
+	NOT-FOR-US: AV Book Library
+CVE-2009-0331
+	NOT-FOR-US: Enhanced Simple PHP Gallery (ESPG)
+CVE-2009-0330
+	NOT-FOR-US: Simple Content Management System (SCMS)
+CVE-2009-0329
+	NOT-FOR-US: Joomla!
+CVE-2009-0328
+	NOT-FOR-US: ROBS-PROJECTS Digital Sales IPN
+CVE-2009-0327
+	NOT-FOR-US: Free Bible Search PHP Script
+CVE-2009-0326
+	NOT-FOR-US: Dark Age CMS
+CVE-2009-0325
+	NOT-FOR-US: Ninja Blog
+CVE-2009-0324
+	NOT-FOR-US: BibCiter
 CVE-2009-0322 (drivers/firmware/dell_rbu.c in the Linux kernel before 2.6.27.13, and ...)
 	- linux-2.6 <unfixed>
 	- linux-2.6.24 <removed>
@@ -7136,7 +7188,7 @@
 	NOTE: Hardly maintained and very few users, long standing sec issues in Etch,
 	NOTE: Emailed release team to ask for removal from lenny
 CVE-2008-3358 (Cross-site scripting (XSS) vulnerability in Web Dynpro (WD) in the SAP ...)
-	TODO: check
+	NOT-FOR-US: SAP NetWeaver portal
 CVE-2008-3357 (Untrusted search path vulnerability in ingvalidpw in Ingres 2.6, ...)
 	NOT-FOR-US: Ingres
 CVE-2008-3356 (verifydb in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres ...)




More information about the Secure-testing-commits mailing list