[Secure-testing-commits] r12737 - data/CVE

James Strandboge jamie-guest at alioth.debian.org
Wed Sep 2 18:24:21 UTC 2009


Author: jamie-guest
Date: 2009-09-02 18:24:21 +0000 (Wed, 02 Sep 2009)
New Revision: 12737

Modified:
   data/CVE/list
Log:
Change chromium NFUs to itp

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-09-02 18:21:28 UTC (rev 12736)
+++ data/CVE/list	2009-09-02 18:24:21 UTC (rev 12737)
@@ -93,7 +93,7 @@
 CVE-2009-3012 (Mozilla Firefox 3.0.13 and earlier, 3.5, 3.6 a1 pre, and 3.7 a1 pre ...)
 	TODO: check
 CVE-2009-3011 (Google Chrome 1.0.154.48 and earlier, 2.0.172.28, 2.0.172.37, and ...)
-	NOT-FOR-US: Google Chrome
+	- chromium-browser <itp> (bug #520324)
 CVE-2009-3010 (Mozilla Firefox 3.0.13 and earlier, 3.5, 3.6 a1 pre, and 3.7 a1 pre; ...)
 	TODO: check
 CVE-2009-3009
@@ -4377,7 +4377,7 @@
 CVE-2009-1599 (Opera executes DOM calls in response to a javascript: URI in the ...)
 	NOT-FOR-US: Opera
 CVE-2009-1598 (Google Chrome executes DOM calls in response to a javascript: URI in ...)
-	NOT-FOR-US: Google Chrome
+	- chromium-browser <itp> (bug #520324)
 CVE-2009-1597 (Mozilla Firefox executes DOM calls in response to a javascript: URI in ...)
 	TODO: check
 CVE-2009-1596 (Ignite Realtime Openfire before 3.6.5 does not properly implement the ...)
@@ -4615,7 +4615,7 @@
 CVE-2009-1516 (Stack-based buffer overflow in the IceWarpServer.APIObject ActiveX ...)
 	NOT-FOR-US: ActiveX
 CVE-2009-1514 (Google Chrome 1.0.154.53 allows remote attackers to cause a denial of ...)
-	NOT-FOR-US: Google Chrome
+	- chromium-browser <itp> (bug #520324)
 CVE-2008-6791 (PumpKIN TFTP Server 2.7.2.0 allows remote attackers to cause a denial ...)
 	NOT-FOR-US: PumpKIN TFTP Server
 CVE-2008-6790 (The admin module in MindDezign Photo Gallery 2.2 allows remote ...)
@@ -9011,7 +9011,7 @@
 CVE-2009-0412 (The ProcessLogin function in class.auth.php in Interspire Shopping ...)
 	NOT-FOR-US: Interspire Shopping Cart
 CVE-2009-0411 (Google Chrome before 1.0.154.46 does not properly restrict access from ...)
-	NOT-FOR-US: Google Chrome
+	- chromium-browser <itp> (bug #520324)
 CVE-2009-0410 (Off-by-one error in the SMTP daemon in GroupWise Internet Agent (GWIA) ...)
 	NOT-FOR-US: Novell GroupWise
 CVE-2009-0409 (SQL injection vulnerability in offline_auth.php in Max.Blog 1.0.6 and ...)
@@ -9098,7 +9098,7 @@
 CVE-2009-0375 (A DLL file in RealNetworks RealPlayer 11 allows remote attackers to ...)
 	NOT-FOR-US: RealPlayer
 CVE-2009-0374 (** DISPUTED ** ...)
-	NOT-FOR-US: Google Chrome
+	- chromium-browser <itp> (bug #520324)
 CVE-2009-0373 (SQL injection vulnerability in the ElearningForce Flash Magazine ...)
 	NOT-FOR-US: Joomla
 CVE-2009-0372 (Unrestricted file upload vulnerability in index.php in Miltenovik ...)
@@ -9518,7 +9518,7 @@
 	- moin 1.8.1-1.1 (low)
 	NOTE: http://hg.moinmo.in/moin/1.7/rev/89b91bf87dad
 CVE-2009-0276 (Cross-domain vulnerability in the V8 JavaScript engine in Google ...)
-	NOT-FOR-US: Google Chrome
+	- chromium-browser <itp> (bug #520324)
 CVE-2009-0274 (Unspecified vulnerability in WebAccess in Novell GroupWise 6.5, 7.0, ...)
 	NOT-FOR-US: Novell GroupWise
 CVE-2009-0273 (Multiple cross-site scripting (XSS) vulnerabilities in Novell ...)
@@ -10578,7 +10578,7 @@
 CVE-2008-5750 (Argument injection vulnerability in Microsoft Internet Explorer 8 beta ...)
 	NOT-FOR-US: Microsoft
 CVE-2008-5749 (** DISPUTED ** ...)
-	NOT-FOR-US: Google Chrome
+	- chromium-browser <itp> (bug #520324)
 CVE-2008-5748 (Directory traversal vulnerability in plugins/spaw2/dialogs/dialog.php ...)
 	NOT-FOR-US: BloofoxCMS
 CVE-2008-5747 (F-Prot 4.6.8 for GNU/Linux allows remote attackers to bypass ...)
@@ -14145,7 +14145,7 @@
 CVE-2008-4341 (add.php in MyBlog 0.9.8 and earlier allows remote attackers to bypass ...)
 	NOT-FOR-US: MyBlog
 CVE-2008-4340 (Google Chrome 0.2.149.29 and 0.2.149.30 allows remote attackers to ...)
-	NOT-FOR-US: Google Chrome
+	- chromium-browser <itp> (bug #520324)
 CVE-2008-4339 (Unspecified vulnerability in the Java Administration GUI (jnbSA) in ...)
 	NOT-FOR-US: Symantec Veritas NetBackup Server
 CVE-2008-4338 (SQL injection vulnerability in the brilliant_gallery_checklist_save ...)




More information about the Secure-testing-commits mailing list