[Secure-testing-commits] r16556 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Wed Apr 20 06:32:21 UTC 2011


Author: jmm
Date: 2011-04-20 06:32:13 +0000 (Wed, 20 Apr 2011)
New Revision: 16556

Modified:
   data/CVE/list
Log:
new jifty issue
new unimportant perl issue
Apple issue might affect standard libxslt in the archive
tinyproxy issue only affects stable


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-04-20 00:11:22 UTC (rev 16555)
+++ data/CVE/list	2011-04-20 06:32:13 UTC (rev 16556)
@@ -1,3 +1,5 @@
+CVE-2011-XXXX
+	- libjifty-dbi-perl 0.68-1 (bug #622919)
 CVE-2011-1717
 	NOT-FOR-US: Skype for Android
 CVE-2011-1715
@@ -557,6 +559,7 @@
 CVE-2011-1499
 	RESERVED
 	- tinyproxy 1.8.2-2 (bug #621493)
+	[lenny] - tinyproxy <not-affected> (Vulnerable code not present)
 CVE-2011-1498
 	RESERVED
 CVE-2011-1497
@@ -595,7 +598,8 @@
 	[squeeze] - rsyslog <no-dsa> (Minor issue)
 	[lenny] - rsyslog <no-dsa> (Minor issue)
 CVE-2011-1487 (The (1) lc, (2) lcfirst, (3) uc, and (4) ucfirst functions in Perl ...)
-	TODO: check
+	- perl <unfixed> (unimportant; bug #622817)
+	NOTE: http://nntp.perl.org/group/perl.perl5.porters/171010
 CVE-2011-1486
 	RESERVED
 	- libvirt <unfixed> (low; bug #623222)
@@ -4385,6 +4389,7 @@
 	RESERVED
 CVE-2011-0195 (The generate-id XPath function in libxslt in Apple iOS 4.3.x before ...)
 	NOT-FOR-US: Apple iOS
+	TODO: Check with Apple, whether this is the standard libxslt
 CVE-2011-0194 (Integer overflow in ImageIO in Apple Mac OS X 10.6 before 10.6.7 ...)
 	NOT-FOR-US: Apple Mac OS
 CVE-2011-0193 (Multiple buffer overflows in Image RAW in Apple Mac OS X before 10.6.7 ...)




More information about the Secure-testing-commits mailing list