[Secure-testing-commits] r17131 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Sun Aug 28 20:40:35 UTC 2011


Author: gilbert-guest
Date: 2011-08-28 20:40:34 +0000 (Sun, 28 Aug 2011)
New Revision: 17131

Modified:
   data/CVE/list
Log:
t1ib issue update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-08-28 13:21:59 UTC (rev 17130)
+++ data/CVE/list	2011-08-28 20:40:34 UTC (rev 17131)
@@ -4431,10 +4431,16 @@
 	TODO: check
 CVE-2011-1554 (Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before ...)
 	- t1lib <unfixed>
+	- xpdf 3.02-9
+	- poppler <not-affected> (never used t1lib)
 CVE-2011-1553 (Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in ...)
 	- t1lib <unfixed>
+	- xpdf 3.02-9
+	- poppler <not-affected> (never used t1lib)
 CVE-2011-1552 (t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6 and other ...)
 	- t1lib <unfixed>
+	- xpdf 3.02-9
+	- poppler <not-affected> (never used t1lib)
 CVE-2011-1551 (SUSE openSUSE Factory assigns ownership of the /var/log/cobbler/ ...)
 	- logrotate <unfixed>
 CVE-2011-1550 (The default configuration of logrotate on SUSE openSUSE Factory uses ...)




More information about the Secure-testing-commits mailing list