[Secure-testing-commits] r13876 - data/CVE

Joey Hess joeyh at alioth.debian.org
Thu Jan 21 21:14:26 UTC 2010


Author: joeyh
Date: 2010-01-21 21:14:25 +0000 (Thu, 21 Jan 2010)
New Revision: 13876

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-01-21 19:06:49 UTC (rev 13875)
+++ data/CVE/list	2010-01-21 21:14:25 UTC (rev 13876)
@@ -1,3 +1,17 @@
+CVE-2010-0363 (Cross-site scripting (XSS) vulnerability in Zeus Web Server before ...)
+	TODO: check
+CVE-2010-0362 (Zeus Web Server before 4.3r5 does not use random transaction IDs for ...)
+	TODO: check
+CVE-2010-0361 (Stack-based buffer overflow in the WebDAV implementation in webservd ...)
+	TODO: check
+CVE-2010-0360 (Sun Java System Web Server (aka SJWS) 7.0 Update 7 allows remote ...)
+	TODO: check
+CVE-2010-0359 (Buffer overflow in the SSLv2 support in Zeus Web Server before 4.3r5 ...)
+	TODO: check
+CVE-2010-0358 (Heap-based buffer overflow in the server in IBM Lotus Domino 7 and 8.5 ...)
+	TODO: check
+CVE-2010-0357 (Cross-site scripting (XSS) vulnerability in the Login page in IBM ...)
+	TODO: check
 CVE-2010-XXXX [MoinMoin sys.argv information disclosure]
 	- moin <unfixed>
 	[etch] - moin <not-affected>
@@ -1401,10 +1415,10 @@
 	RESERVED
 CVE-2010-0038
 	RESERVED
-CVE-2010-0037
-	RESERVED
-CVE-2010-0036
-	RESERVED
+CVE-2010-0037 (Buffer overflow in Image RAW in Apple Mac OS X 10.5.8 and 10.6.2 ...)
+	TODO: check
+CVE-2010-0036 (Buffer overflow in CoreAudio in Apple Mac OS X 10.5.8 and 10.6.2 ...)
+	TODO: check
 CVE-2010-0035
 	RESERVED
 CVE-2010-0034
@@ -2343,10 +2357,10 @@
 	RESERVED
 CVE-2009-4001
 	RESERVED
-CVE-2009-4000
-	RESERVED
-CVE-2009-3999
-	RESERVED
+CVE-2009-4000 (Directory traversal vulnerability in goform/formExportDataLogs in HP ...)
+	TODO: check
+CVE-2009-3999 (Stack-based buffer overflow in goform/formExportDataLogs in HP Power ...)
+	TODO: check
 CVE-2009-3998
 	RESERVED
 CVE-2009-3997 (Integer overflow in IN_MOD.DLL (aka the Module Decoder Plug-in) in ...)




More information about the Secure-testing-commits mailing list