[Secure-testing-commits] r14385 - in data: CVE DSA
Michael Gilbert
gilbert-guest at alioth.debian.org
Sat Apr 3 00:14:32 UTC 2010
Author: gilbert-guest
Date: 2010-04-03 00:14:26 +0000 (Sat, 03 Apr 2010)
New Revision: 14385
Modified:
data/CVE/list
data/DSA/list
Log:
DSA-2026-1; drbd issue got a cve id
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2010-04-02 21:14:42 UTC (rev 14384)
+++ data/CVE/list 2010-04-03 00:14:26 UTC (rev 14385)
@@ -669,13 +669,12 @@
{DSA-2020-1}
- ikiwiki 3.20100312 (low)
[lenny] - ikwiki 2.53.5
-CVE-2010-XXXX [linux-2.6 drbd connector issue]
+CVE-2010-0747 [linux-2.6 drbd connector issue]
- linux-2.6 <not-affected> (drbd introduced in 2.6.33, which is not yet in unstable)
NOTE: checked 2.6.33-1~experimental.3, and the fix is already applied
TODO: fix tracking once kernel >= 2.6.33 enters unstable
- drbd8 2:8.3.7-1
[lenny] - drbd8 2:8.0.14-2+lenny1
- NOTE: DSA-2015-1
NOTE: CVE requested at http://www.openwall.com/lists/oss-security/2010/03/11/9
CVE-2009-4718 (SQL injection vulnerability in visitorduration.php in Gonafish ...)
NOT-FOR-US: Gonafish WebStatCaffe
@@ -1359,8 +1358,6 @@
RESERVED
CVE-2010-0748
RESERVED
-CVE-2010-0747
- RESERVED
CVE-2010-0746
RESERVED
CVE-2010-0745 [dovecot DoS]
Modified: data/DSA/list
===================================================================
--- data/DSA/list 2010-04-02 21:14:42 UTC (rev 14384)
+++ data/DSA/list 2010-04-03 00:14:26 UTC (rev 14385)
@@ -1,3 +1,6 @@
+[02 Apr 2010] DSA-2026-1 netpbm-free - buffer overflow
+ {CVE-2009-4274}
+ [lenny] - netpbm-free 2:10.0-12+lenny1
[31 Mar 2010] DSA-2025-1 icedove - several vulnerabilities
{CVE-2009-2404 CVE-2009-2408 CVE-2009-2463 CVE-2009-3072 CVE-2009-3075 CVE-2010-0163}
[lenny] - icedove 2.0.0.24-0lenny1
@@ -26,6 +29,7 @@
[lenny] - pulseaudio 0.9.10-3+lenny2
{CVE-2009-1299}
[15 Mar 2010] DSA-2015-1 drbd8 linux-modules-extra-2.6 - privilege escalation
+ {CVE-2010-0747}
[lenny] - drbd8 2:8.0.14-2+lenny1
[lenny] - linux-modules-extra-2.6 2.6.26-6+lenny3
[13 Mar 2010] DSA-2016-1 drupal6 - several vulnerabilities
More information about the Secure-testing-commits
mailing list