[Secure-testing-commits] r14503 - data/CVE

Joey Hess joeyh at alioth.debian.org
Fri Apr 16 21:15:44 UTC 2010


Author: joeyh
Date: 2010-04-16 21:15:32 +0000 (Fri, 16 Apr 2010)
New Revision: 14503

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-04-16 09:14:41 UTC (rev 14502)
+++ data/CVE/list	2010-04-16 21:15:32 UTC (rev 14503)
@@ -1,4 +1,172 @@
-CVE-2010-1423 [Sun Java browser plugin command execution]
+CVE-2010-1457
+	RESERVED
+CVE-2010-1456
+	RESERVED
+CVE-2010-1455
+	RESERVED
+CVE-2010-1454
+	RESERVED
+CVE-2010-1453
+	RESERVED
+CVE-2010-1452
+	RESERVED
+CVE-2010-1451
+	RESERVED
+CVE-2010-1450
+	RESERVED
+CVE-2010-1449
+	RESERVED
+CVE-2010-1448
+	RESERVED
+CVE-2010-1447
+	RESERVED
+CVE-2010-1446
+	RESERVED
+CVE-2010-1445
+	RESERVED
+CVE-2010-1444
+	RESERVED
+CVE-2010-1443
+	RESERVED
+CVE-2010-1442
+	RESERVED
+CVE-2010-1441
+	RESERVED
+CVE-2010-1440
+	RESERVED
+CVE-2010-1439
+	RESERVED
+CVE-2010-1438
+	RESERVED
+CVE-2010-1437
+	RESERVED
+CVE-2010-1436
+	RESERVED
+CVE-2010-1435
+	RESERVED
+CVE-2010-1434
+	RESERVED
+CVE-2010-1433
+	RESERVED
+CVE-2010-1432
+	RESERVED
+CVE-2010-1431
+	RESERVED
+CVE-2010-1430
+	RESERVED
+CVE-2010-1429
+	RESERVED
+CVE-2010-1428
+	RESERVED
+CVE-2010-1427 (Cross-site scripting (XSS) vulnerability in the SearchHighlight plugin ...)
+	TODO: check
+CVE-2010-1426 (SQL injection vulnerability in MODx Evolution before 1.0.3 allows ...)
+	TODO: check
+CVE-2010-1425 (F-Secure Internet Security 2010 and earlier; Anti-Virus for Microsoft ...)
+	TODO: check
+CVE-2010-1424 (Unspecified vulnerability in JustSystems Ichitaro and Ichitaro ...)
+	TODO: check
+CVE-2010-1422
+	RESERVED
+CVE-2010-1421
+	RESERVED
+CVE-2010-1420
+	RESERVED
+CVE-2010-1419
+	RESERVED
+CVE-2010-1418
+	RESERVED
+CVE-2010-1417
+	RESERVED
+CVE-2010-1416
+	RESERVED
+CVE-2010-1415
+	RESERVED
+CVE-2010-1414
+	RESERVED
+CVE-2010-1413
+	RESERVED
+CVE-2010-1412
+	RESERVED
+CVE-2010-1411
+	RESERVED
+CVE-2010-1410
+	RESERVED
+CVE-2010-1409
+	RESERVED
+CVE-2010-1408
+	RESERVED
+CVE-2010-1407
+	RESERVED
+CVE-2010-1406
+	RESERVED
+CVE-2010-1405
+	RESERVED
+CVE-2010-1404
+	RESERVED
+CVE-2010-1403
+	RESERVED
+CVE-2010-1402
+	RESERVED
+CVE-2010-1401
+	RESERVED
+CVE-2010-1400
+	RESERVED
+CVE-2010-1399
+	RESERVED
+CVE-2010-1398
+	RESERVED
+CVE-2010-1397
+	RESERVED
+CVE-2010-1396
+	RESERVED
+CVE-2010-1395
+	RESERVED
+CVE-2010-1394
+	RESERVED
+CVE-2010-1393
+	RESERVED
+CVE-2010-1392
+	RESERVED
+CVE-2010-1391
+	RESERVED
+CVE-2010-1390
+	RESERVED
+CVE-2010-1389
+	RESERVED
+CVE-2010-1388
+	RESERVED
+CVE-2010-1387
+	RESERVED
+CVE-2010-1386
+	RESERVED
+CVE-2010-1385
+	RESERVED
+CVE-2010-1384
+	RESERVED
+CVE-2010-1383
+	RESERVED
+CVE-2010-1382
+	RESERVED
+CVE-2010-1381
+	RESERVED
+CVE-2010-1380
+	RESERVED
+CVE-2010-1379
+	RESERVED
+CVE-2010-1378
+	RESERVED
+CVE-2010-1377
+	RESERVED
+CVE-2010-1376
+	RESERVED
+CVE-2010-1375
+	RESERVED
+CVE-2010-1374
+	RESERVED
+CVE-2010-1373
+	RESERVED
+CVE-2010-1423 (Argument injection vulnerability in the URI handler in (a) Java NPAPI ...)
 	- sun-java6 <unfixed> (high)
 CVE-2010-XXXX [gource: predictable log file located in /tmp]
 	- gource 0.26-2 (low; bug #577958)
@@ -94,8 +262,8 @@
 	NOT-FOR-US: Heartlogic HL-SiteManager
 CVE-2010-1330
 	RESERVED
-CVE-2010-1329
-	RESERVED
+CVE-2010-1329 (Imperva SecureSphere Web Application Firewall and Database Firewall ...)
+	TODO: check
 CVE-2010-1328
 	RESERVED
 CVE-2010-1327
@@ -970,8 +1138,8 @@
 	RESERVED
 CVE-2010-0995
 	RESERVED
-CVE-2010-0994
-	RESERVED
+CVE-2010-0994 (Multiple buffer overflows in src/vl/vlDAT.cpp in Visualization Library ...)
+	TODO: check
 CVE-2010-0993 (Unrestricted file upload vulnerability in Pulse CMS Basic 1.2.2 and ...)
 	NOT-FOR-US: Pulse CMS Basic
 CVE-2010-0992 (Multiple cross-site request forgery (CSRF) vulnerabilities in Pulse ...)
@@ -2223,8 +2391,8 @@
 	NOT-FOR-US: Cisco Unified Communications Manager
 CVE-2010-0590 (The CMSIPUtility component in Cisco Unified Communications Manager ...)
 	NOT-FOR-US: Cisco Unified Communications Manager
-CVE-2010-0589
-	RESERVED
+CVE-2010-0589 (The Web Install ActiveX control in Cisco Secure Desktop (CSD) before ...)
+	TODO: check
 CVE-2010-0588 (Cisco Unified Communications Manager (aka CUCM, formerly CallManager) ...)
 	NOT-FOR-US: Cisco Unified Communications Manager
 CVE-2010-0587 (Cisco Unified Communications Manager (aka CUCM, formerly CallManager) ...)
@@ -2647,8 +2815,7 @@
 	NOTE: http://otrs.org/advisory/OSA-2010-01-en/
 CVE-2010-0437 (The ip6_dst_lookup_tail function in net/ipv6/ip6_output.c in the Linux ...)
 	- linux-2.6 2.6.26-9
-CVE-2010-0436 [KDE Security Advisory: KDM Local Privilege Escalation Vulnerability]
-	RESERVED
+CVE-2010-0436 (Race condition in backend/ctrl.c in KDM in KDE Software Compilation ...)
 	- kdebase 4:4.0
 	- kdebase-workspace <unfixed>
 	NOTE: http://www.kde.org/info/security/advisory-20100413-1.txt
@@ -2661,8 +2828,8 @@
 CVE-2010-0433 (The kssl_keytab_is_available function in ssl/kssl.c in OpenSSL before ...)
 	- openssl <not-affected> (Kerberos support not enabled)
 	NOTE: http://www.openwall.com/lists/oss-security/2010/03/03/5
-CVE-2010-0432
-	RESERVED
+CVE-2010-0432 (Multiple cross-site scripting (XSS) vulnerabilities in the Apache Open ...)
+	TODO: check
 CVE-2010-0431
 	RESERVED
 CVE-2010-0430




More information about the Secure-testing-commits mailing list