[Secure-testing-commits] r16720 - in data: CVE DSA

Florian Weimer fw at alioth.debian.org
Fri May 27 22:01:49 UTC 2011


Author: fw
Date: 2011-05-27 22:01:48 +0000 (Fri, 27 May 2011)
New Revision: 16720

Modified:
   data/CVE/list
   data/DSA/list
Log:
DSA-2243-1: unbound


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-05-27 06:33:35 UTC (rev 16719)
+++ data/CVE/list	2011-05-27 22:01:48 UTC (rev 16720)
@@ -20918,8 +20918,9 @@
 	{DSA-1968-1}
 	- pdns-recursor 3.1.7.2-1 (high)
 	[etch] - pdns-recursor <not-affected> (vulnerable code not present)
-CVE-2009-4008
+CVE-2009-4008 [Unbound DNSSEC validation failure induced by crafted queries]
 	RESERVED
+	- unbound 1.4.4-1 (low)
 CVE-2009-4007 (Unspecified vulnerability in the NormaliseTrainConsist function in ...)
 	- openttd 0.7.5-1
 	[lenny] - openttd 0.6.2-1+lenny1

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2011-05-27 06:33:35 UTC (rev 16719)
+++ data/DSA/list	2011-05-27 22:01:48 UTC (rev 16720)
@@ -1,3 +1,6 @@
+[27 May 2011] DSA-2243-1 unbound - design flaw
+	{CVE-2009-4008}
+	[lenny] - unbound 1.4.6-1~lenny1
 [25 May 2011] DSA-2242-1 cyrus-imapd-2.2 - implementation error
 	{CVE-2011-1926 }
 	[lenny] - cyrus-imapd-2.2 2.2.13-14+lenny4




More information about the Secure-testing-commits mailing list