[Secure-testing-commits] r14474 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Tue Apr 13 23:03:33 UTC 2010


Author: gilbert-guest
Date: 2010-04-13 23:03:32 +0000 (Tue, 13 Apr 2010)
New Revision: 14474

Modified:
   data/CVE/list
Log:
pwn2own issues, and a xulrunner issue with no details

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-04-13 22:53:22 UTC (rev 14473)
+++ data/CVE/list	2010-04-13 23:03:32 UTC (rev 14474)
@@ -627,13 +627,18 @@
 CVE-2010-XXXX [Rbot Owner Reaction Command Execution]
 	- rbot 0.9.14-2 (bug #575286)
 CVE-2010-1122 (Unspecified vulnerability in Mozilla Firefox 3.5.x through 3.5.8 ...)
-	TODO: check
+	- xulrunner <undetermined>
+	- iceape <undetermined>
+	[lenny] - iceape <not-affected> (stub package)
+	NOTE: no details available, and bug report linked from CVE page is for CVE-2010-1028
+	NOTE: text says that the problem is similar to that, but affecting firefox 3.5
+	TODO: check 
 CVE-2010-1121 (Unspecified vulnerability in Mozilla Firefox 3 on Windows 7 allows ...)
-	TODO: check
+	TODO: check xulrunner once details are disclosed
 CVE-2010-1120 (Unspecified vulnerability in Safari 4 on Apple Mac OS X 10.6 allows ...)
-	NOT-FOR-US: Apple Safari
+	TODO: check webkit once details are disclosed
 CVE-2010-1119 (Unspecified vulnerability in Safari on Apple iPhone OS allows remote ...)
-	NOT-FOR-US: Apple Safari
+	TODO: check webkit once details are disclosed
 CVE-2010-1118 (Unspecified vulnerability in Internet Explorer 8 on Microsoft Windows ...)
 	NOT-FOR-US: Internet Explorer
 CVE-2010-1117 (Heap-based buffer overflow in Internet Explorer 8 on Microsoft Windows ...)




More information about the Secure-testing-commits mailing list