[Secure-testing-commits] r12118 - data/CVE

Nico Golde nion at alioth.debian.org
Sat Jun 13 15:09:17 UTC 2009


Author: nion
Date: 2009-06-13 15:09:16 +0000 (Sat, 13 Jun 2009)
New Revision: 12118

Modified:
   data/CVE/list
Log:
CVE-2009-17{88,91} impact is rather low, overflowing data not fully attacker controlled

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-06-13 15:06:12 UTC (rev 12117)
+++ data/CVE/list	2009-06-13 15:09:16 UTC (rev 12118)
@@ -940,9 +940,9 @@
 CVE-2008-6809 (SQL injection vulnerability in hotel_habitaciones.php in Venalsur ...)
 	NOT-FOR-US: Venalsur Booking center Booking System
 CVE-2009-1788 (Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 ...)
-	- libsndfile 1.0.20-1 (medium; bug #528650)
+	- libsndfile 1.0.20-1 (low; bug #528650)
 CVE-2009-1791 (Heap-based buffer overflow in aiff_read_header in libsndfile 1.0.15 ...)
-	- libsndfile 1.0.20-1 (medium; bug #528650)
+	- libsndfile 1.0.20-1 (low; bug #528650)
 CVE-2009-XXXX [kdebase: potential digital certificate deficiencies in konqueror 4]
 	- kdebase <unfixed> (low; bug #526985)
 	[etch] - kdebase <not-affected> (vulnerability introduced in konqueror 4)




More information about the Secure-testing-commits mailing list