[Secure-testing-commits] r12749 - data/CVE

James Strandboge jamie-guest at alioth.debian.org
Fri Sep 4 21:13:34 UTC 2009


Author: jamie-guest
Date: 2009-09-04 21:13:31 +0000 (Fri, 04 Sep 2009)
New Revision: 12749

Modified:
   data/CVE/list
Log:
NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-09-04 17:57:53 UTC (rev 12748)
+++ data/CVE/list	2009-09-04 21:13:31 UTC (rev 12749)
@@ -1,3 +1,49 @@
+CVE-2009-3068
+	NOT-FOR-US: Adobe RoboHelp Server
+CVE-2009-3067
+	NOT-FOR-US: Reservation Manager
+CVE-2009-3066
+	NOT-FOR-US: PropertyWatchScript.com Property Watch
+CVE-2009-3065
+	NOT-FOR-US: Ve-EDIT
+CVE-2009-3064
+	NOT-FOR-US: Ve-EDIT
+CVE-2009-3063
+	NOT-FOR-US: Joomla!
+CVE-2009-3062
+	NOT-FOR-US: OSI Codes PHP Live!
+CVE-2009-3061
+	NOT-FOR-US: Alqatari Q R Script
+CVE-2009-3060
+	NOT-FOR-US: Joker Board
+CVE-2009-3059
+	NOT-FOR-US: Joker Board
+CVE-2009-3058
+	NOT-FOR-US: akPlayer
+CVE-2009-3057
+	NOT-FOR-US: AOM Software Beex
+CVE-2009-3056
+	NOT-FOR-US: KingCMS
+CVE-2009-3055
+	NOT-FOR-US: DataLife Engine
+CVE-2009-3054
+	NOT-FOR-US: Joomla!
+CVE-2009-3053
+	NOT-FOR-US: Joomla!
+CVE-2009-3052
+	NOT-FOR-US: Prime Quick Style addon
+CVE-2008-7166
+	NOT-FOR-US: web interface in BitTorrent 6.0.1 (build 7859)
+CVE-2008-7165
+	NOT-FOR-US: TELECOM ITALIA Alice Gate2 Plus Wi-Fi
+CVE-2008-7164
+	NOT-FOR-US: Shareaza
+CVE-2008-7163
+	NOT-FOR-US: SineCMS
+CVE-2008-7162
+	NOT-FOR-US: Hero Super Player
+CVE-2008-7161
+	NOT-FOR-US: Fortinet FortiGuard Fortinet
 CVE-2008-7159 [silc ASN1 encoding format string vulnerability]
 	- silc-toolkit 1.1.10-1 (low)
 	- silc-client 1.1-2 (low)
@@ -30,17 +76,17 @@
 CVE-2009-3043 (The tty_ldisc_hangup function in drivers/char/tty_ldisc.c in the Linux ...)
 	TODO: check
 CVE-2008-7158 (Numara FootPrints 7.5a through 7.5a1 and 8.0 through 8.0a allows ...)
-	TODO: check
+	NOT-FOR-US: Numara FootPrints
 CVE-2008-7157 (Unrestricted file upload vulnerability in EkinBoard 1.1.0 and earlier ...)
-	TODO: check
+	NOT-FOR-US: EkinBoard
 CVE-2008-7156 (EkinBoard 1.1.0 and earlier, when register_globals is enabled, allows ...)
-	TODO: check
+	NOT-FOR-US: EkinBoard
 CVE-2008-7155 (NetRisk 1.9.7 does not properly restrict access to ...)
-	TODO: check
+	NOT-FOR-US: NetRisk
 CVE-2008-7154 (Docebo 3.5.0.3 and earlier allows remote attackers to obtain sensitive ...)
-	TODO: check
+	NOT-FOR-US: Docebo
 CVE-2008-7153 (SQL injection vulnerability in the autoDetectRegion function in ...)
-	TODO: check
+	NOT-FOR-US: Docebo
 CVE-2009-3039
 	RESERVED
 CVE-2009-3038 (A certain ActiveX control in lnresobject.dll 7.1.1.119 in the Research ...)
@@ -320,7 +366,7 @@
 CVE-2009-2969
 	RESERVED
 CVE-2009-2968 (Directory traversal vulnerability in a support component in the web ...)
-	TODO: check
+	NOT-FOR-US: VMware Studio
 CVE-2009-2967 (Multiple cross-site scripting (XSS) vulnerabilities in Buildbot 0.7.6 ...)
 	- buildbot 0.7.11p3-1
 	[etch] - buildbot <not-affected> (According to the vendor 0.7.5 and earlier are not affected)
@@ -1942,7 +1988,7 @@
 CVE-2009-2522
 	RESERVED
 CVE-2009-2521
-	RESERVED
+	NOT-FOR-US: Microsoft Internet Information Server
 CVE-2009-2520
 	RESERVED
 CVE-2009-2519




More information about the Secure-testing-commits mailing list