[Secure-testing-commits] r11343 - in data: . CVE

white at alioth.debian.org white at alioth.debian.org
Fri Mar 6 14:06:51 UTC 2009


Author: white
Date: 2009-03-06 14:06:50 +0000 (Fri, 06 Mar 2009)
New Revision: 11343

Modified:
   data/CVE/list
   data/spu-candidates.txt
Log:
no-dsa for psi

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-03-06 13:52:32 UTC (rev 11342)
+++ data/CVE/list	2009-03-06 14:06:50 UTC (rev 11343)
@@ -149,6 +149,8 @@
 	NOT-FOR-US: CS-Cart
 CVE-2008-6393 (PSI Jabber client before 0.12.1 allows remote attackers to cause a ...)
 	- psi <unfixed> (low; bug #518468)
+	[lenny] - psi <no-dsa> (Only exploitable as client DoS)
+	[etch] - psi <not-affected> (Vulnerable code not present)
 	NOTE: http://jolmos.blogspot.com/2008/12/psi-remote-integer-overflow.html
 CVE-2009-0752 (Unspecified vulnerability in Movable Type Pro and Community Solution ...)
 	- movabletype-opensource <not-affected> (bug #518469)

Modified: data/spu-candidates.txt
===================================================================
--- data/spu-candidates.txt	2009-03-06 13:52:32 UTC (rev 11342)
+++ data/spu-candidates.txt	2009-03-06 14:06:50 UTC (rev 11343)
@@ -422,6 +422,11 @@
 
 --
 
+psi (CVE-2008-6393)
+#518468
+
+--
+
 python2.4 (CVE-2008-4864, CVE-2008-5031)
 #504620
 




More information about the Secure-testing-commits mailing list