[Secure-testing-commits] r15804 - data/CVE

Raphael Geissert geissert at alioth.debian.org
Thu Jan 6 07:34:06 UTC 2011


Author: geissert
Date: 2011-01-06 07:34:03 +0000 (Thu, 06 Jan 2011)
New Revision: 15804

Modified:
   data/CVE/list
Log:
new issues: 2 offlineimap, 1 linux


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-01-06 07:30:26 UTC (rev 15803)
+++ data/CVE/list	2011-01-06 07:34:03 UTC (rev 15804)
@@ -864,10 +864,12 @@
 	- python-django 1.2.4-1
 	[squeeze] - python-django 1.2.3-3
 	NOTE: http://www.djangoproject.com/weblog/2010/dec/22/security/
-CVE-2010-4533
+CVE-2010-4533 [offlineimap uses SSLv2]
 	RESERVED
-CVE-2010-4532
+	- offlineimap <unfixed> (bug #606962)
+CVE-2010-4532 [no SSL cert validation]
 	RESERVED
+	- offlineimap <unfixed> (bug #603450)
 CVE-2010-4531 [pcsc-lite buffer overflow]
 	RESERVED
 	- pcsc-lite 1.6.6-1 (unimportant; bug #607781)
@@ -892,6 +894,7 @@
 	- linux-2.6 <unfixed>
 CVE-2010-4525
 	RESERVED
+	- linux-2.6 <unfixed>
 CVE-2010-4524 (Cross-site scripting (XSS) vulnerability in lib/mhtxthtml.pl in ...)
 	- mhonarc <unfixed> (bug #607693)
 CVE-2010-4522 (Multiple cross-site scripting (XSS) vulnerabilities in MyBB (aka ...)




More information about the Secure-testing-commits mailing list