[Secure-testing-commits] r15562 - data/CVE

Moritz Muehlenhoff jmm-guest at alioth.debian.org
Thu Nov 4 17:46:41 UTC 2010


Author: jmm-guest
Date: 2010-11-04 17:46:41 +0000 (Thu, 04 Nov 2010)
New Revision: 15562

Modified:
   data/CVE/list
Log:
gnome-xcf-thumbnailer NMUd


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-11-03 22:01:37 UTC (rev 15561)
+++ data/CVE/list	2010-11-04 17:46:41 UTC (rev 15562)
@@ -19169,7 +19169,8 @@
 CVE-2009-2176 (Multiple directory traversal vulnerabilities in fuzzylime (cms) 3.03a ...)
 	NOT-FOR-US: fuzzylime
 CVE-2009-2175 (Stack-based buffer overflow in the flattenIncrementally function in ...)
-	- gnome-xcf-thumbnailer <unfixed> (bug #601735)
+	- gnome-xcf-thumbnailer 1.0-1.1 (low; bug #601735)
+	[lenny] - gnome-xcf-thumbnailer <no-dsa> (Minor issue)
 	- xcftools 1.0.7-1 (low; bug #533361)
 	[etch] - xcftools 1.0.4-1+etch1
 	[lenny] - xcftools 1.0.4-1+lenny1
@@ -19674,7 +19675,8 @@
 CVE-2008-6826 (dhtml.pl in MHF Media Pro allows remote attackers to execute arbitrary ...)
 	NOT-FOR-US: MHF Media Pro
 CVE-2009-XXXX [predictable random number generator used in web browsers]
-	- webkit <unfixed> (low; bug #532514)
+	- webkit 1.2 (low; bug #532514)
+        NOTE: The implementations for UNIX seems fine, might be fixed earlier
 	[lenny] - webkit <no-dsa> (Minor issue)
 	- kdebase <unfixed> (low; bug #532519)
 	[squeeze] - kdebase <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list