[Secure-testing-commits] r15058 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Thu Jul 29 04:41:23 UTC 2010


Author: jmm-guest
Date: 2010-07-29 04:41:21 +0000 (Thu, 29 Jul 2010)
New Revision: 15058

Modified:
   data/CVE/list
Log:
paste no-dsa
bugs filed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-07-29 04:38:05 UTC (rev 15057)
+++ data/CVE/list	2010-07-29 04:41:21 UTC (rev 15058)
@@ -1039,10 +1039,9 @@
 	RESERVED
 CVE-2010-2491 [roundup XSS]
 	RESERVED
-	- roundup <undetermined>
+	- roundup <unfixed> (bug filed)
 	NOTE: http://bugs.gentoo.org/show_bug.cgi?id=326395
 	NOTE: http://roundup.svn.sourceforge.net/viewvc/roundup?view=revision&revision=4486
-	TODO: check
 CVE-2010-2490 [murmur DoS via malformed client query]
 	RESERVED
 	- mumble 1.2.2-4 (bug #587713)
@@ -1082,9 +1081,9 @@
 	NOTE: http://thread.gmane.org/gmane.linux.network/164869
 CVE-2010-2477 [XSS in paste.httpexceptions]
 	RESERVED
-	- python-paste 1.7.4-1
+	- python-paste 1.7.4-1 (low)
+	[lenny] - python-paste <no-dsa> (Minor issue)
 	NOTE: http://bitbucket.org/ianb/paste/changeset/fcae59df8b56
-	TODO: evaluate impact
 CVE-2010-2475
 	RESERVED
 CVE-2010-2474
@@ -1565,7 +1564,7 @@
 CVE-2010-2267 (Multiple cross-site scripting (XSS) vulnerabilities in Accoria Web ...)
 	NOT-FOR-US: Accoria Web Server
 CVE-2010-2266 (nginx 0.8.36 allows remote attackers to cause a denial of service ...)
-	- nginx <unfixed> (bug filed)
+	- nginx <unfixed> (bug #590768)
 CVE-2009-4895 [linux tty null ptr dereference]
 	RESERVED
 	- linux-2.6 2.6.32-9




More information about the Secure-testing-commits mailing list