[Secure-testing-commits] r14875 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Wed Jun 16 01:11:43 UTC 2010


Author: gilbert-guest
Date: 2010-06-16 01:11:41 +0000 (Wed, 16 Jun 2010)
New Revision: 14875

Modified:
   data/CVE/list
Log:
kernel updates

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-06-15 22:07:45 UTC (rev 14874)
+++ data/CVE/list	2010-06-16 01:11:41 UTC (rev 14875)
@@ -46,6 +46,8 @@
 	TODO: check
 CVE-2010-2266 (nginx 0.8.36 allows remote attackers to cause a denial of service ...)
 	TODO: check
+CVE-2009-4895 [linux tty null ptr dereference]
+	- linux-2.6 2.6.32-9
 CVE-2009-4894 (Multiple cross-site scripting (XSS) vulnerabilities in profile.php in ...)
 	TODO: check
 CVE-2009-4893 (Buffer overflow in UnrealIRCd 3.2beta11 through 3.2.8, when ...)
@@ -2661,8 +2663,8 @@
 	[lenny] - dovecot <not-affected> (this problem exists only with v1.2.x, not with v1.0 or v1.1)
 	NOTE: http://www.dovecot.org/list/dovecot-news/2010-March/000152.html
 CVE-2010-XXXX [Linux ThinkPad video output status local DoS]
-	- linux-2.6 2.6.32-12 (bug #565790)
-	NOTE: http://git.kernel.org/linus/b525c06cdbd8a3963f0173ccd23f9147d4c384b5
+	- linux-2.6 2.6.32-12 (bug #565790; unimportant)
+	NOTE: this is more of a hardware bug rather than a security issue
 CVE-2010-1159 [aircrack-ng EAPOL buffer overflow]
 	RESERVED
 	- aircrack-ng 1:1.1-1 (low; bug #577758)




More information about the Secure-testing-commits mailing list