[Secure-testing-commits] r16594 - in data: . CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Sun Apr 24 21:21:05 UTC 2011


Author: jmm
Date: 2011-04-24 21:20:59 +0000 (Sun, 24 Apr 2011)
New Revision: 16594

Modified:
   data/CVE/list
   data/ospu-candidates.txt
   data/spu-candidates.txt
Log:
open-vm-tools is contrib, not supported


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-04-24 21:16:02 UTC (rev 16593)
+++ data/CVE/list	2011-04-24 21:20:59 UTC (rev 16594)
@@ -249,7 +249,7 @@
 CVE-2011-1716 (Multiple cross-site scripting (XSS) vulnerabilities in the Web UI in ...)
 	NOT-FOR-US: Xymon
 CVE-2009-5071 (Unspecified vulnerability in Palm Pre WebOS before 1.2.1 has unknown ...)
-	TODO: check
+	NOT-FOR-US: Palm WebOS
 CVE-2011-XXXX
 	- libjifty-dbi-perl 0.68-1 (bug #622919)
 CVE-2011-1717 (Skype for Android stores sensitive user data without encryption in ...)
@@ -340,8 +340,9 @@
 	[squeeze] - vlc 1.1.3-1squeeze5
 	NOTE: CVE id requested
 CVE-2011-1681 (vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka ...)
-	- open-vm-tools <unfixed>
-	TODO: File bug
+	- open-vm-tools <unfixed> (low; bug filed)
+	[squeeze] - open-vm-tools <no-dsa> (Contrib not supported)
+	[lenny] - open-vm-tools <no-dsa> (Contrib not supported)
 CVE-2011-1680 (ncpmount in ncpfs 2.2.6 and earlier does not remove the /etc/mtab~ ...)
 	TODO: check
 CVE-2011-1679 (ncpfs 2.2.6 and earlier attempts to use (1) ncpmount to append to the ...)
@@ -700,7 +701,7 @@
 CVE-2011-1535
 	RESERVED
 CVE-2011-1534 (Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x ...)
-	TODO: check
+	NOT-FOR-US: HP Network Node Manager
 CVE-2011-1533 (Cross-site scripting (XSS) vulnerability on the HP Photosmart D110 and ...)
 	NOT-FOR-US: HP Photosmart
 CVE-2011-1532 (Unspecified vulnerability in the SNMP component on the HP Photosmart ...)

Modified: data/ospu-candidates.txt
===================================================================
--- data/ospu-candidates.txt	2011-04-24 21:16:02 UTC (rev 16593)
+++ data/ospu-candidates.txt	2011-04-24 21:20:59 UTC (rev 16594)
@@ -496,6 +496,10 @@
 
 --
 
+open-vm-tools (CVE-2011-1681)
+
+--
+
 phpbb3 (CVE-2010-1630, 1627)
 
 --

Modified: data/spu-candidates.txt
===================================================================
--- data/spu-candidates.txt	2011-04-24 21:16:02 UTC (rev 16593)
+++ data/spu-candidates.txt	2011-04-24 21:20:59 UTC (rev 16594)
@@ -86,6 +86,10 @@
 
 --
 
+open-vm-tools (CVE-2011-1681)
+
+--
+
 pidgin (CVE-2011-XXXX, CVE-2011-1091)
 http://www.pidgin.im/news/security/?id=50
 




More information about the Secure-testing-commits mailing list