[Secure-testing-commits] r14943 - data/CVE

Raphael Geissert geissert at alioth.debian.org
Thu Jul 1 02:22:45 UTC 2010


Author: geissert
Date: 2010-07-01 02:22:45 +0000 (Thu, 01 Jul 2010)
New Revision: 14943

Modified:
   data/CVE/list
Log:
new issues: qt4, murmur
libpng fixed in sid


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-07-01 00:09:41 UTC (rev 14942)
+++ data/CVE/list	2010-07-01 02:22:45 UTC (rev 14943)
@@ -1,3 +1,13 @@
+CVE-2010-XXXX [murmur DoS via malformed client query]
+	- mumble <unfixed> (low; bug #587713)
+	TODO: request id
+	NOTE: http://aluigi.altervista.org/adv/mumbleed-adv.txt
+	NOTE: BID 41251, SA40385
+CVE-2010-XXXX [resource consumption in QSslSocketBackendPrivate::transmit()]
+	- qt4-x11 <unfixed> (bug #587711)
+	TODO: request id
+	NOTE: http://aluigi.altervista.org/adv/qtsslame-adv.txt
+	NOTE: BID 41250, SA40389
 CVE-2010-2516 (Multiple SQL injection vulnerabilities in 2daybiz Multi Level ...)
 	NOT-FOR-US: 2daybiz Multi Level Marketing
 CVE-2009-4923 (Unspecified vulnerability in the DTLS implementation on Cisco Adaptive ...)
@@ -663,7 +673,7 @@
 	NOTE: http://www.ocert.org/advisories/ocert-2010-001.html
 CVE-2010-2249 [memory leak in libpng]
 	RESERVED
-	- libpng <unfixed> (low; bug #587670)
+	- libpng 1.2.44-1 (low; bug #587670)
 	- freeimage <undetermined> (unimportant)
 	- tuxonice-userui <unfixed> (unimportant)
 	TODO: binNMU tuxonice-userui once libpng is fixed
@@ -3583,7 +3593,7 @@
 	NOTE: Scheduled for next round of Firefox updates (20th July)
 CVE-2010-1205 [memory write out of bounds]
 	RESERVED
-	- libpng <unfixed> (bug #587670)
+	- libpng 1.2.44-1 (bug #587670)
 	- freeimage <undetermined> 
 	- tuxonice-userui <unfixed> 
 	TODO: binNMU tuxonice-userui once libpng is fixed




More information about the Secure-testing-commits mailing list