[Secure-testing-commits] r16230 - data/CVE

Joey Hess joeyh at alioth.debian.org
Tue Feb 22 21:14:54 UTC 2011


Author: joeyh
Date: 2011-02-22 21:14:46 +0000 (Tue, 22 Feb 2011)
New Revision: 16230

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-02-22 19:18:45 UTC (rev 16229)
+++ data/CVE/list	2011-02-22 21:14:46 UTC (rev 16230)
@@ -1,3 +1,33 @@
+CVE-2011-1058
+	RESERVED
+CVE-2011-1057 (The installer for Metasploit Framework 3.5.1, when running on Windows, ...)
+	TODO: check
+CVE-2011-1056 (The installer for Metasploit Framework 3.5.1, when running on Windows, ...)
+	TODO: check
+CVE-2011-1055 (SQL injection vulnerability in api/ice_media.cfc in Lingxia I.C.E CMS ...)
+	TODO: check
+CVE-2011-1054 (Unspecified vulnerability in the PEF input file loader in Hex-Rays IDA ...)
+	TODO: check
+CVE-2011-1053 (Unspecified vulnerability in the Mach-O input file loader in Hex-Rays ...)
+	TODO: check
+CVE-2011-1052 (Integer overflow in the PSX/GEOS input file loaders in Hex-Rays IDA ...)
+	TODO: check
+CVE-2011-1051 (Integer overflow in the COFF/EPOC/EXPLOAD input file loaders in ...)
+	TODO: check
+CVE-2011-1050 (Unspecified vulnerability in Hex-Rays IDA Pro 5.7 and 6.0 has unknown ...)
+	TODO: check
+CVE-2011-1049 (Buffer overflow in the Mach-O input file loader in Hex-Rays IDA Pro ...)
+	TODO: check
+CVE-2011-1048 (SQL injection vulnerability in product.php in MihanTools 1.33 allows ...)
+	TODO: check
+CVE-2011-1047 (Multiple SQL injection vulnerabilities in VastHTML Forum Server (aka ...)
+	TODO: check
+CVE-2011-1046 (IBM FileNet P8 Content Engine (aka P8CE) 4.0.1 through 5.0.0, as used ...)
+	TODO: check
+CVE-2011-1045 (Unspecified vulnerability in the Rendition Engine (aka P8RE) 4.0.1 ...)
+	TODO: check
+CVE-2010-4745 (Cross-site scripting (XSS) vulnerability in nav.html in PHPXref before ...)
+	TODO: check
 CVE-2011-XXXX [pam_pgsql overflow]
 	- pam-pgsql <unfixed> (bug #603436)
 CVE-2011-1044 (The ib_uverbs_poll_cq function in drivers/infiniband/core/uverbs_cmd.c ...)
@@ -359,7 +389,7 @@
 	NOT-FOR-US: IBM Lotus Domino
 CVE-2011-0913 (Stack-based buffer overflow in ndiiop.exe in the DIIOP implementation ...)
 	NOT-FOR-US: IBM Lotus Domino
-CVE-2011-0912 (IBM Lotus Notes 8.0.x before 8.0.2 FP6 and 8.5.x before 8.5.1 FP5 ...)
+CVE-2011-0912 (Argument injection vulnerability in IBM Lotus Notes 8.0.x before 8.0.2 ...)
 	NOT-FOR-US: IBM Lotus Notes
 CVE-2011-0911 (Cross-site scripting (XSS) vulnerability in the Users module in Zikula ...)
 	NOT-FOR-US: zikula
@@ -933,8 +963,8 @@
 CVE-2011-0695 [panic in ib_cm:cm_work_handler]
 	RESERVED
 	- linux-2.6 <unfixed>
-CVE-2011-0694
-	RESERVED
+CVE-2011-0694 (RealNetworks RealPlayer 11.0 through 11.1, SP 1.0 through 1.1.5, and ...)
+	TODO: check
 CVE-2011-0693
 	RESERVED
 CVE-2011-0692
@@ -1545,10 +1575,10 @@
 	NOT-FOR-US: EC-CUBE
 CVE-2011-0450 (The downloads manager in Opera before 11.01 on Windows does not ...)
 	NOT-FOR-US: Opera
-CVE-2011-0449
-	RESERVED
-CVE-2011-0448
-	RESERVED
+CVE-2011-0449 (actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x ...)
+	TODO: check
+CVE-2011-0448 (Ruby on Rails 3.0.x before 3.0.4 does not ensure that arguments to the ...)
+	TODO: check
 CVE-2011-0447 (Ruby on Rails 2.1.x, 2.2.x, and 2.3.x before 2.3.11, and 3.x before ...)
 	TODO: check
 CVE-2011-0446 (Multiple cross-site scripting (XSS) vulnerabilities in the mail_to ...)
@@ -1817,10 +1847,10 @@
 	RESERVED
 CVE-2011-0331
 	RESERVED
-CVE-2011-0330
-	RESERVED
-CVE-2011-0329
-	RESERVED
+CVE-2011-0330 (The Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx ...)
+	TODO: check
+CVE-2011-0329 (Directory traversal vulnerability in the GetData method in the Dell ...)
+	TODO: check
 CVE-2011-0328
 	RESERVED
 CVE-2011-0327




More information about the Secure-testing-commits mailing list