[Secure-testing-commits] r16831 - in data: . CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Tue Jun 21 16:44:52 UTC 2011


Author: jmm
Date: 2011-06-21 16:44:51 +0000 (Tue, 21 Jun 2011)
New Revision: 16831

Modified:
   data/CVE/list
   data/ospu-candidates.txt
   data/spu-candidates.txt
Log:
prosody already CVEfied


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-06-21 16:43:36 UTC (rev 16830)
+++ data/CVE/list	2011-06-21 16:44:51 UTC (rev 16831)
@@ -605,8 +605,11 @@
 	RESERVED
 CVE-2011-2206
 	RESERVED
-CVE-2011-2205
+CVE-2011-2205 [prosody billion laughs]
 	RESERVED
+	- prosody 0.7.0-1 (low; bug #579087)
+	[squeeze] - prosody <no-dsa> (Minor issue)
+	[lenny] - prosody <no-dsa> (Minor issue)
 CVE-2011-2204
 	RESERVED
 CVE-2011-2201
@@ -649,10 +652,6 @@
 	TODO: check
 CVE-2009-5076 (CRE Loaded before 6.2.14, and possibly other versions before 6.3.x, ...)
 	TODO: check
-CVE-2010-XXXX [prosody billion laughs]
-	- prosody 0.7.0-1 (low; bug #579087)
-	[squeeze] - prosody <no-dsa> (Minor issue)
-	[lenny] - prosody <no-dsa> (Minor issue)
 CVE-2011-2477 (Multiple cross-site scripting (XSS) vulnerabilities in config.c in config.cgi in Icinga ...)
 	- icinga <undetermined>
 	NOTE: 1.4.1 is said to be fixed

Modified: data/ospu-candidates.txt
===================================================================
--- data/ospu-candidates.txt	2011-06-21 16:43:36 UTC (rev 16830)
+++ data/ospu-candidates.txt	2011-06-21 16:44:51 UTC (rev 16831)
@@ -524,15 +524,12 @@
 
 --
 
-prosody (CVE-2010-XXXX)
+prosody (CVE-2011-2205)
 #579087
 Also requires additional fix in lua-expat
 
 --
 
-
---
-
 puppet (CVE-2009-3564, CVE-2010-0156)
 
 --

Modified: data/spu-candidates.txt
===================================================================
--- data/spu-candidates.txt	2011-06-21 16:43:36 UTC (rev 16830)
+++ data/spu-candidates.txt	2011-06-21 16:44:51 UTC (rev 16831)
@@ -102,7 +102,7 @@
 
 --
 
-prosody (CVE-2010-XXXX)
+prosody (CVE-2011-2205)
 #579087
 Also requires additional fix in lua-expat
 




More information about the Secure-testing-commits mailing list