[Secure-testing-commits] r12861 - data/CVE

Giuseppe Iuculano derevko-guest at alioth.debian.org
Mon Sep 21 17:55:39 UTC 2009


Author: derevko-guest
Date: 2009-09-21 17:55:39 +0000 (Mon, 21 Sep 2009)
New Revision: 12861

Modified:
   data/CVE/list
Log:
- NFUs
- wireshark issues
- CVE-2009-3235: Multiple stack-based buffer overflows in the Sieve plugin in Dovecot


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-09-21 17:17:34 UTC (rev 12860)
+++ data/CVE/list	2009-09-21 17:55:39 UTC (rev 12861)
@@ -1,15 +1,16 @@
 CVE-2009-3245
 	RESERVED
 CVE-2009-3244 (Heap-based buffer overflow in the SwDir.dll ActiveX control in Adobe ...)
-	TODO: check
+	NOT-FOR-US: Adobe ShockWave Player 
 CVE-2009-3243 (Unspecified vulnerability in the TLS dissector in Wireshark 1.2.0 and ...)
-	TODO: check
+	- wireshark <not-affected> (Windows-only issue)
 CVE-2009-3242 (Unspecified vulnerability in packet.c in the GSM A RR dissector in ...)
-	TODO: check
+	- wireshark <unfixed> (low; bug #547704)
+	NOTE: no-dsa candidate, application crash
 CVE-2009-3241 (Unspecified vulnerability in the OpcUa (OPC UA) dissector in Wireshark ...)
-	TODO: check
+	- wireshark <unfixed> (low; bug #547704)
 CVE-2009-3240 (Cross-site scripting (XSS) vulnerability in the Happy Linux XF-Section ...)
-	TODO: check
+	NOT-FOR-US: module for XOOPS
 CVE-2009-3239 (Buffer overflow in the EMF parser implementation in OpenOffice.org ...)
 	TODO: check
 CVE-2009-3238 (The get_random_int function in drivers/char/random.c in the Linux ...)
@@ -17,7 +18,7 @@
 CVE-2009-3237 (Multiple cross-site scripting (XSS) vulnerabilities in Horde ...)
 	TODO: check
 CVE-2009-3235 (Multiple stack-based buffer overflows in the Sieve plugin in Dovecot ...)
-	TODO: check
+	- dovecot 1:1.2.1-1 (medium; bug #546656)
 CVE-2009-3228
 	RESERVED
 CVE-2005-4881




More information about the Secure-testing-commits mailing list