[Secure-testing-commits] r15828 - data/CVE

Jonathan Wiltshire jmw at alioth.debian.org
Mon Jan 10 22:11:30 UTC 2011


Author: jmw
Date: 2011-01-10 22:11:30 +0000 (Mon, 10 Jan 2011)
New Revision: 15828

Modified:
   data/CVE/list
Log:
Further NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-01-10 21:30:31 UTC (rev 15827)
+++ data/CVE/list	2011-01-10 22:11:30 UTC (rev 15828)
@@ -269,13 +269,13 @@
 CVE-2010-4669 (The Neighbor Discovery (ND) protocol implementation in the IPv6 stack ...)
 	NOT-FOR-US: Microsoft Windows
 CVE-2009-5040 (CallManager Express (CME) on Cisco IOS before 15.0(1)XA allows remote ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2009-5039 (Memory leak in the gk_circuit_info_do_in_acf function in the H.323 ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2009-5038 (Cisco IOS before 15.0(1)XA does not properly handle IRC traffic during ...)
-	TODO: check
+	NOT-FOR-US: Cisco IOS
 CVE-2009-5037 (Cisco Adaptive Security Appliances (ASA) 5500 series devices with ...)
-	TODO: check
+	NOT-FOR-US: Cisco Adaptive Security Appliances
 CVE-2011-XXXX
 	- xdigger <removed> (bug #609096)
 	[lenny] - xdigger <no-dsa> (Minor issue)
@@ -1313,13 +1313,13 @@
 CVE-2011-0001
 	RESERVED
 CVE-2010-4499 (Session fixation vulnerability in Collaborative Information Manager ...)
-	TODO: check
+	NOT-FOR-US: TIBCO Collaborative Information Manager
 CVE-2010-4498 (Unspecified vulnerability in Collaborative Information Manager server, ...)
-	TODO: check
+	NOT-FOR-US: TIBCO Collaborative Information Manager
 CVE-2010-4497 (Cross-site scripting (XSS) vulnerability in Collaborative Information ...)
-	TODO: check
+	NOT-FOR-US: TIBCO Collaborative Information Manager
 CVE-2010-4496 (Multiple SQL injection vulnerabilities in Collaborative Information ...)
-	TODO: check
+	NOT-FOR-US: TIBCO Collaborative Information Manager
 CVE-2010-4495 (Unspecified vulnerability in the ActiveMatrix Runtime component in ...)
 	NOT-FOR-US: TIBCO ActiveMatrix
 CVE-2010-4494 (Double free vulnerability in libxml2 2.7.8 and other versions, as used ...)
@@ -1740,7 +1740,7 @@
 CVE-2010-4323
 	RESERVED
 CVE-2010-4322 (Cross-site scripting (XSS) vulnerability in gwtTeaming.rpc in Novell ...)
-	TODO: check
+	NOT-FOR-US: Novell Vibe
 CVE-2010-4321 (Stack-based buffer overflow in an ActiveX control in ienipp.ocx in ...)
 	NOT-FOR-US: Novell iPrint client
 CVE-2010-4320
@@ -1873,7 +1873,7 @@
 CVE-2010-4277 (Cross-site scripting (XSS) vulnerability in lembedded-video.php in the ...)
 	NOT-FOR-US: Embedded Video plugin 4.1 for WordPress 
 CVE-2010-4276 (Cross-site scripting (XSS) vulnerability in the lz_tracking_set_sessid ...)
-	TODO: check
+	NOT-FOR-US: LiveZilla
 CVE-2010-4275 (Multiple cross-site scripting (XSS) vulnerabilities in Radius Manager ...)
 	NOT-FOR-US: Radius Manager
 CVE-2010-4274 (reset_diragent_keys in the Common agent in IBM Systems Director 6.2.0 ...)
@@ -2609,7 +2609,7 @@
 CVE-2010-3985 (Cross-site scripting (XSS) vulnerability in HP Operations ...)
 	NOT-FOR-US: HP Operations Orchestration
 CVE-2010-3984 (Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 ...)
-	TODO: check
+	NOT-FOR-US: CA XOsoft
 CVE-2010-3983 (CmcApp in SAP BusinessObjects Enterprise XI 3.2 allows remote ...)
 	NOT-FOR-US: SAP BusinessObjects Enterprise
 CVE-2010-3982 (SAP BusinessObjects Enterprise XI 3.2 allows remote attackers to ...)
@@ -2731,7 +2731,7 @@
 CVE-2010-3924
 	RESERVED
 CVE-2010-3923 (Untrusted search path vulnerability in AttacheCase before 2.70 allows ...)
-	TODO: check
+	NOT-FOR-US: AttacheCase
 CVE-2010-3922 (SQL injection vulnerability in Movable Type 4.x before 4.35 and 5.x ...)
 	- movabletype-opensource 4.3.5+dfsg-1 (bug #606311)
 	TODO: check
@@ -4702,7 +4702,7 @@
 CVE-2010-3202 (Cross-site scripting (XSS) vulnerability in Flock Browser 3.0.0.3989 ...)
 	NOT-FOR-US: flock
 CVE-2010-3201 (Cross-site scripting (XSS) vulnerability in NetWin Surgemail before ...)
-	TODO: check
+	NOT-FOR-US: NetWin Surgemail
 CVE-2010-3200 (MSO.dll in Microsoft Word 2003 SP3 11.8326.11.8324 allows remote ...)
 	NOT-FOR-US: Microsoft Word
 CVE-2010-3199 (Untrusted search path vulnerability in TortoiseSVN 1.6.10, Build 19898 ...)




More information about the Secure-testing-commits mailing list