[Secure-testing-commits] r15871 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Jan 14 23:47:03 UTC 2011


Author: jmm
Date: 2011-01-14 23:47:02 +0000 (Fri, 14 Jan 2011)
New Revision: 15871

Modified:
   data/CVE/list
Log:
php/CVE-2009-5016 already fixed in sid/squeeze


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-01-14 23:43:07 UTC (rev 15870)
+++ data/CVE/list	2011-01-14 23:47:02 UTC (rev 15871)
@@ -2121,9 +2121,8 @@
 CVE-2009-5017 (Mozilla Firefox before 3.6 Beta 3 does not properly handle overlong ...)
 	- xulrunner <undetermined>
 CVE-2009-5016 (Integer overflow in the xml_utf8_decode function in ext/xml/xml.c in ...)
-	- php5 <unfixed>
-	TODO: check
-	NOTE: probably already fixed in squeeze/sid, have to check
+	- php5 5.3.3-4
+	NOTE: Also fixed by debian/patches/CVE-2010-3870.patch
 CVE-2010-4221 (Multiple stack-based buffer overflows in the pr_netio_telnet_gets ...)
 	- proftpd-dfsg 1.3.3a-5 (bug #603511; bug #602279)
 	[lenny] - proftpd-dfsg <not-affected> (Introduced in 1.3.2rc3)




More information about the Secure-testing-commits mailing list