[Secure-testing-commits] r16915 - data/CVE
Joey Hess
joeyh at alioth.debian.org
Fri Jul 8 09:14:21 UTC 2011
Author: joeyh
Date: 2011-07-08 09:14:21 +0000 (Fri, 08 Jul 2011)
New Revision: 16915
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2011-07-08 08:20:18 UTC (rev 16914)
+++ data/CVE/list 2011-07-08 09:14:21 UTC (rev 16915)
@@ -662,7 +662,7 @@
- iceape <not-affected> (Was already fixed as CVE-2010-1201 for Firefox < 3.6)
- icedove 3.1.11-1
CVE-2011-2376 (Multiple unspecified vulnerabilities in the browser engine in Mozilla ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- xulrunner <removed>
[lenny] - xulrunner 1.9.0.19-12
- iceweasel 3.5.19-3
@@ -674,7 +674,7 @@
- xulrunner <not-affected> (Only affects Firefox 5.0, not yet in unstable)
- iceweasel <not-affected> (Only affects Firefox 5.0, not yet in unstable)
CVE-2011-2374 (Multiple unspecified vulnerabilities in the browser engine in Mozilla ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- xulrunner <removed>
[lenny] - xulrunner 1.9.0.19-12
- iceweasel 3.5.19-3
@@ -683,7 +683,7 @@
[lenny] - iceape <not-affected> (Only a stub package)
- icedove 3.1.11-1
CVE-2011-2373 (Use-after-free vulnerability in Mozilla Firefox before 3.6.18 and 4.x ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- xulrunner <removed>
- iceweasel 3.5.19-3
[lenny] - xulrunner 1.9.0.19-12
@@ -694,7 +694,7 @@
CVE-2011-2372
RESERVED
CVE-2011-2371 (Integer overflow in the Array.reduceRight method in Mozilla Firefox ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- xulrunner <removed>
- iceweasel 3.5.19-3
[lenny] - xulrunner 1.9.0.19-12
@@ -722,7 +722,7 @@
- xulrunner <not-affected> (Only affects Firefox >= 4.0, not yet in unstable)
- iceweasel <not-affected> (Only affects Firefox >= 4.0, not yet in unstable)
CVE-2011-2365 (Unspecified vulnerability in the browser engine in Mozilla Firefox ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- xulrunner <not-affected> (Vulnerable code not present)
- iceweasel 3.5.19-3
[lenny] - xulrunner 1.9.0.19-12
@@ -736,7 +736,7 @@
- iceape <not-affected> (Only affects Firefox >= 3.6)
- icedove 3.1.11-1
CVE-2011-2363 (Use-after-free vulnerability in the nsSVGPointList::AppendElement ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- iceweasel 3.5.19-3
- xulrunner <removed>
[lenny] - xulrunner 1.9.0.19-12
@@ -745,7 +745,7 @@
[lenny] - iceape <not-affected> (Only a stub package)
- icedove <unfixed>
CVE-2011-2362 (Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- iceweasel 3.5.19-3
- xulrunner <removed>
[lenny] - xulrunner 1.9.0.19-12
@@ -1235,9 +1235,11 @@
CVE-2011-2214 (Unspecified vulnerability in the Open Database Connectivity (ODBC) ...)
NOT-FOR-US: 7T Interactive Graphical SCADA System
CVE-2011-2175 (Integer underflow in the visual_read function in wiretap/visual.c in ...)
+ {DSA-2274-1}
- wireshark 1.6.0-1 (unimportant; bug #630159)
NOTE: Crashes w/o code injection not treated as security issues, see README.Security
CVE-2011-2174 (Double free vulnerability in the tvb_uncompress function in ...)
+ {DSA-2274-1}
- wireshark 1.6.0-1 (bug #630159)
CVE-2011-2173 (The implementation of OutputMediator objects in IBM WebSphere Portal ...)
NOT-FOR-US: IBM WebSphere Portal
@@ -1751,12 +1753,15 @@
CVE-2011-1960
RESERVED
CVE-2011-1959 (The snoop_read function in wiretap/snoop.c in Wireshark 1.2.x before ...)
+ {DSA-2274-1}
- wireshark 1.6.0-1 (unimportant; bug #630159)
NOTE: Crashes w/o code injection not treated as security issues, see README.Security
CVE-2011-1958 (Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows ...)
+ {DSA-2274-1}
- wireshark <unfixed> (unimportant)
NOTE: Crashes w/o code injection not treated as security issues, see README.Security
CVE-2011-1957 (The dissect_dcm_main function in epan/dissectors/packet-dcm.c in the ...)
+ {DSA-2274-1}
- wireshark <unfixed> (unimportant)
NOTE: Crashes w/o code injection not treated as security issues, see README.Security
CVE-2011-1956 (The bytes_repr_len function in Wireshark 1.4.5 uses an incorrect ...)
@@ -2784,6 +2789,7 @@
[squeeze] - wireshark <not-affected> (Only affects 1.4.x)
[lenny] - wireshark <not-affected> (Only affects 1.4.x)
CVE-2011-1590 (The X.509if dissector in Wireshark 1.2.x before 1.2.16 and 1.4.x ...)
+ {DSA-2274-1}
- wireshark 1.4.5-1 (unimportant)
CVE-2011-1589 (Directory traversal vulnerability in Path.pm in Mojolicious before ...)
{DSA-2221-1}
@@ -7357,7 +7363,7 @@
CVE-2011-0086 (win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and ...)
NOT-FOR-US: Microsoft Windows
CVE-2011-0085 (Use-after-free vulnerability in the nsXULCommandDispatcher function in ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- iceweasel 3.5.19-3
- xulrunner <removed>
[lenny] - xulrunner 1.9.0.19-12
@@ -7368,7 +7374,7 @@
CVE-2011-0084
RESERVED
CVE-2011-0083 (Use-after-free vulnerability in the nsSVGPathSegList::ReplaceItem ...)
- {DSA-2269-1 DSA-2268-1}
+ {DSA-2273-3 DSA-2269-1 DSA-2268-1}
- iceweasel 3.5.19-3
- xulrunner <removed>
[lenny] - xulrunner 1.9.0.19-12
More information about the Secure-testing-commits
mailing list