[Secure-testing-commits] r16559 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Wed Apr 20 17:18:43 UTC 2011


Author: jmm
Date: 2011-04-20 17:18:42 +0000 (Wed, 20 Apr 2011)
New Revision: 16559

Modified:
   data/CVE/list
Log:
new chrome/webkit issue
harmless iceweasel issue
add netqmail
new mutt issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-04-20 17:17:11 UTC (rev 16558)
+++ data/CVE/list	2011-04-20 17:18:42 UTC (rev 16559)
@@ -9,7 +9,7 @@
 CVE-2011-1713 (Microsoft msxml.dll, as used in Internet Explorer 8 on Windows 7, ...)
 	NOT-FOR-US: Microsoft
 CVE-2011-1712 (The txXPathNodeUtils::getXSLTId function in ...)
-	TODO: check
+	- iceweasel <unfixed> (unimportant)
 CVE-2011-1711
 	RESERVED
 CVE-2011-1710
@@ -51,7 +51,8 @@
 CVE-2011-1692
 	RESERVED
 CVE-2011-1691 (The counterToCSSValue function in CSSComputedStyleDeclaration.cpp in ...)
-	TODO: check
+	- chromium-browser <undetermined>
+	- webkit <undetermined>
 CVE-2011-1690
 	RESERVED
 	{DSA-2220-1}
@@ -805,12 +806,14 @@
 	NOT-FOR-US: SCO SCOoffice Server
 CVE-2011-1431 (The STARTTLS implementation in qmail-smtpd.c in qmail-smtpd in the ...)
 	- qmail <unfixed>
+	- netqmail <unfixed>
 	[lenny] - qmail <no-dsa> (non-free doesn't get security support)
 	[squeeze] - qmail <no-dsa> (non-free doesn't get security support)
 CVE-2011-1430 (The STARTTLS implementation in the server in Ipswitch IMail 11.03 and ...)
 	NOT-FOR-US: Ipswitch IMail
 CVE-2011-1429 (Mutt does not verify that the smtps server hostname matches the domain ...)
-	TODO: check
+	- mutt <unfixed> (low; bug #619216)
+	NOTE: http://dev.mutt.org/trac/ticket/3506
 CVE-2011-1428 (Wee Enhanced Environment for Chat (aka WeeChat) 0.3.4 and earlier does ...)
 	NOT-FOR-US: WeeChat
 CVE-2011-1427 (Multiple cross-site scripting (XSS) vulnerabilities in Kodak InSite ...)




More information about the Secure-testing-commits mailing list