[Secure-testing-commits] r12369 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Fri Jul 17 20:52:11 UTC 2009


Author: jmm-guest
Date: 2009-07-17 20:52:10 +0000 (Fri, 17 Jul 2009)
New Revision: 12369

Modified:
   data/CVE/list
Log:
this is an issue in Xulrunner, not Iceweasel


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-07-17 20:44:29 UTC (rev 12368)
+++ data/CVE/list	2009-07-17 20:52:10 UTC (rev 12369)
@@ -72,10 +72,9 @@
 	NOT-FOR-US: Xigla Software Absolute News Feed
 CVE-2008-6854 (Xigla Software Absolute FAQ Manager.NET 6.0 allows remote attackers to ...)
 	NOT-FOR-US: Xigla Software Absolute FAQ Manager.NET
-CVE-2009-XXXX [iceweasel: 0-day remote shellcode injection]
-	- iceweasel <unfixed> (high; bug #537104)
-	[etch] - iceweasel <not-affected> (bug in JIT compiler, which was not introduced until 3.5.0)
-	[lenny] - iceweasel <not-affected> (bug in JIT compiler, which was not introduced until 3.5.0)
+CVE-2009-XXXX [Mozilla: shellcode injection in Javascript engine]
+	- xulrunner <not-affected> (high; bug #537104)
+	NOTE: Affected version only available in experimental, only Firefox 3.5
 CVE-2009-2450 (The OAmon.sys kernel driver 3.1.0.0 and earlier in Tall Emu Online ...)
 	NOT-FOR-US: Tall Emu Online Armor Personal Firewall 
 CVE-2009-2449 (Directory traversal vulnerability in ...)




More information about the Secure-testing-commits mailing list