[Secure-testing-commits] r14044 - data/CVE

Raphael Geissert geissert at alioth.debian.org
Fri Feb 5 19:28:47 UTC 2010


Author: geissert
Date: 2010-02-05 19:28:47 +0000 (Fri, 05 Feb 2010)
New Revision: 14044

Modified:
   data/CVE/list
Log:
new libmikmod issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-02-05 09:15:46 UTC (rev 14043)
+++ data/CVE/list	2010-02-05 19:28:47 UTC (rev 14044)
@@ -2914,9 +2914,11 @@
 CVE-2009-3997 (Integer overflow in IN_MOD.DLL (aka the Module Decoder Plug-in) in ...)
 	NOT-FOR-US: winamp
 CVE-2009-3996 (Heap-based buffer overflow in IN_MOD.DLL (aka the Module Decoder ...)
-	NOT-FOR-US: winamp
+	- libmikmod <unfixed>
+	NOTE: http://secunia.com/secunia_research/2009-55/
 CVE-2009-3995 (Multiple heap-based buffer overflows in IN_MOD.DLL (aka the Module ...)
-	NOT-FOR-US: winamp
+	- libmikmod <unfixed>
+	NOTE: http://secunia.com/secunia_research/2009-55/
 CVE-2009-3994 (Stack-based buffer overflow in the GetUID function in ...)
 	- devil 1.7.8-6 (low; bug #560080)
 	[lenny] - devil <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list