[Secure-testing-commits] r16632 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Fri May 6 13:56:15 UTC 2011


Author: jmm
Date: 2011-05-06 13:56:14 +0000 (Fri, 06 May 2011)
New Revision: 16632

Modified:
   data/CVE/list
Log:
new issues in VNC implementations


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-05-06 07:24:01 UTC (rev 16631)
+++ data/CVE/list	2011-05-06 13:56:14 UTC (rev 16632)
@@ -2733,8 +2733,16 @@
 	RESERVED
 CVE-2011-0905
 	RESERVED
+	- vino 2.28.2-3
+	- libvncserver <not-affected> (Performs sufficient range validation, but was initially reported as affected)
+	- kdenetwork 4:4.0
+	NOTE: Only affects the krfb from KDE 3.5
 CVE-2011-0904
 	RESERVED
+	- vino 2.28.2-3
+	- libvncserver <not-affected> (Performs sufficient range validation, but was initially reported as affected)
+	- kdenetwork 4:4.0
+	NOTE: Only affects the krfb from KDE 3.5
 CVE-2011-0903 (Multiple directory traversal vulnerabilities in AR Web Content Manager ...)
 	NOT-FOR-US: AR Web Content Manager
 CVE-2011-0902 (Multiple untrusted search path vulnerabilities in the Java Service in ...)




More information about the Secure-testing-commits mailing list