[Secure-testing-commits] r13894 - data/CVE

Pedro Ribeiro pedrib-guest at alioth.debian.org
Sun Jan 24 15:18:26 UTC 2010


Author: pedrib-guest
Date: 2010-01-24 15:18:18 +0000 (Sun, 24 Jan 2010)
New Revision: 13894

Modified:
   data/CVE/list
Log:
cleaned up latent CVE-2006-0410 and CVE-2006-0806 for package cacti; resolved CVE-2010-0318


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-01-24 14:44:39 UTC (rev 13893)
+++ data/CVE/list	2010-01-24 15:18:18 UTC (rev 13894)
@@ -188,8 +188,8 @@
 CVE-2010-0319 (Cross-site scripting (XSS) vulnerability in index.php in Docmint 1.0 ...)
 	NOT-FOR-US: Docmint
 CVE-2010-0318 (The replay functionality for ZFS Intent Log (ZIL) in FreeBSD 7.1, 7.2, ...)
-	- kfreebsd-6 <undetermined>
-	TODO: check
+	- kfreebsd-7 7.2-10 (bug #566684)
+	- kfreebsd-8 8.0-2
 CVE-2010-0317 (Novell Netware 6.5 SP8 allows remote attackers to cause a denial of ...)
 	NOT-FOR-US: Novell Netware
 CVE-2010-0316 (Integer overflow in Google SketchUp before 7.1 M2 allows remote ...)
@@ -62141,6 +62141,7 @@
 	{DSA-1031-1 DSA-1030-1 DSA-1029-1}
 	- libphp-adodb 4.72-0.1 (bug #358872; medium)
 	- moodle 1.6.1+20060825-1 (bug #360396; medium)
+	- cacti 0.8.6c-7sarge3 (medium)
 	NOTE: according to maintainer, "Moodle neither uses nor plans to use
 	NOTE: ADODB_Pager, so it's not affected by #360396, but include patch for
 	NOTE: it anyway, just in case somebody decides to use it out of the blue
@@ -63191,6 +63192,7 @@
 	{DSA-1031-1 DSA-1030-1 DSA-1029-1}
 	- libphp-adodb 4.72-0.1 (bug #349985; medium)
 	- moodle 1.6-1 (bug #360395; medium)
+	- cacti 0.8.6c-7sarge3 (medium)
 CVE-2006-0409 (Cross-site scripting (XSS) vulnerability in index.php in Pixelpost ...)
 	NOT-FOR-US: Pixelpost Photoblog
 CVE-2006-0408 (rsh utility in Sun Grid Engine (SGE) before 6.0u7_1 allows local users ...)




More information about the Secure-testing-commits mailing list