[Secure-testing-commits] r17685 - data/CVE

Joey Hess joeyh at alioth.debian.org
Fri Nov 25 21:14:36 UTC 2011


Author: joeyh
Date: 2011-11-25 21:14:36 +0000 (Fri, 25 Nov 2011)
New Revision: 17685

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2011-11-25 18:22:59 UTC (rev 17684)
+++ data/CVE/list	2011-11-25 21:14:36 UTC (rev 17685)
@@ -1,3 +1,21 @@
+CVE-2011-4548 (Multiple unspecified vulnerabilities in Google Chrome before ...)
+	TODO: check
+CVE-2011-4547
+	RESERVED
+CVE-2011-4546
+	RESERVED
+CVE-2011-4545
+	RESERVED
+CVE-2011-4544
+	RESERVED
+CVE-2011-4543
+	RESERVED
+CVE-2011-4542
+	RESERVED
+CVE-2011-4541
+	RESERVED
+CVE-2011-4540
+	RESERVED
 CVE-2011-XXXX
 	- yaws <unfixed> (bug #650009)
 	NOTE: According to bug report stable might not be affected, needs more investigation
@@ -506,8 +524,7 @@
 CVE-2011-4333
 	RESERVED
 	NOT-FOR-US: LabWiki
-CVE-2011-4332
-	RESERVED
+CVE-2011-4332 (Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.6.3 ...)
 	NOT-FOR-US: Joomla
 CVE-2011-4331
 	REJECTED
@@ -539,8 +556,7 @@
 CVE-2011-4322
 	RESERVED
 	NOT-FOR-US: websitebaker
-CVE-2011-4321
-	RESERVED
+CVE-2011-4321 (The password reset functionality in Joomla! 1.5.x through 1.5.24 uses ...)
 	NOT-FOR-US: Joomla
 CVE-2011-4320 [ejabberd DoS in pubsub module]
 	RESERVED
@@ -569,8 +585,8 @@
 	{DSA-2347-1}
 	- bind9 <unfixed> (high; bug #649099)
 	NOTE: http://www.isc.org/software/bind/advisories/cve-2011-4313
-CVE-2011-4312
-	RESERVED
+CVE-2011-4312 (Multiple cross-site scripting (XSS) vulnerabilities in the commenting ...)
+	TODO: check
 CVE-2011-4311 (ResourceSpace before 4.2.2833 does not properly validate access keys, ...)
 	NOT-FOR-US: ResourceSpace
 CVE-2011-4310
@@ -586,9 +602,11 @@
 	- moodle <not-affected> (Only affects 2.x)
 CVE-2011-4306 [MSA-11-0037]
 	RESERVED
+	{DSA-2338-1}
 	- moodle 1.9.9.dfsg2-4
 CVE-2011-4305 [MSA-11-0036]
 	RESERVED
+	{DSA-2338-1}
 	- moodle 1.9.9.dfsg2-4
 CVE-2011-4304 [MSA-11-0034]
 	RESERVED
@@ -598,9 +616,11 @@
 	- moodle <not-affected> (Only affects 2.x)
 CVE-2011-4302 [MSA-11-0032]
 	RESERVED
+	{DSA-2338-1}
 	- moodle 1.9.9.dfsg2-4
 CVE-2011-4301 [MSA-11-0031]
 	RESERVED
+	{DSA-2338-1}
 	- moodle 1.9.9.dfsg2-4
 CVE-2011-4300 [MSA-11-0029]
 	RESERVED
@@ -622,6 +642,7 @@
 	- moodle <not-affected> (Only affects 2.x)
 CVE-2011-4294 [MSA-11-0020]
 	RESERVED
+	{DSA-2338-1}
 	- moodle 1.9.9.dfsg2-4
 CVE-2011-4293 [MSA-11-0019]
 	RESERVED
@@ -798,44 +819,44 @@
 	NOT-FOR-US: OlyKit Swoopo Clone 2010
 CVE-2010-4971 (Cross-site scripting (XSS) vulnerability in VideoWhisper PHP 2 Way ...)
 	NOT-FOR-US: VideoWhisper PHP 2 Way Video Chat
-CVE-2011-4262
-	RESERVED
-CVE-2011-4261
-	RESERVED
-CVE-2011-4260
-	RESERVED
-CVE-2011-4259
-	RESERVED
-CVE-2011-4258
-	RESERVED
-CVE-2011-4257
-	RESERVED
-CVE-2011-4256
-	RESERVED
-CVE-2011-4255
-	RESERVED
-CVE-2011-4254
-	RESERVED
-CVE-2011-4253
-	RESERVED
-CVE-2011-4252
-	RESERVED
-CVE-2011-4251
-	RESERVED
-CVE-2011-4250
-	RESERVED
-CVE-2011-4249
-	RESERVED
-CVE-2011-4248
-	RESERVED
-CVE-2011-4247
-	RESERVED
-CVE-2011-4246
-	RESERVED
-CVE-2011-4245
-	RESERVED
-CVE-2011-4244
-	RESERVED
+CVE-2011-4262 (Unspecified vulnerability in RealNetworks RealPlayer before 15.0.0 ...)
+	TODO: check
+CVE-2011-4261 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...)
+	TODO: check
+CVE-2011-4260 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...)
+	TODO: check
+CVE-2011-4259 (Integer underflow in RealNetworks RealPlayer before 15.0.0 allows ...)
+	TODO: check
+CVE-2011-4258 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...)
+	TODO: check
+CVE-2011-4257 (The Cook codec in RealNetworks RealPlayer before 15.0.0 allows remote ...)
+	TODO: check
+CVE-2011-4256 (The RV30 codec in RealNetworks RealPlayer before 15.0.0 and Mac ...)
+	TODO: check
+CVE-2011-4255 (Unspecified vulnerability in RealNetworks RealPlayer before 15.0.0 and ...)
+	TODO: check
+CVE-2011-4254 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...)
+	TODO: check
+CVE-2011-4253 (Unspecified vulnerability in the RV20 codec in RealNetworks RealPlayer ...)
+	TODO: check
+CVE-2011-4252 (The RV10 codec in RealNetworks RealPlayer before 15.0.0 and Mac ...)
+	TODO: check
+CVE-2011-4251 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...)
+	TODO: check
+CVE-2011-4250 (Unspecified vulnerability in the ATRC codec in RealNetworks RealPlayer ...)
+	TODO: check
+CVE-2011-4249 (Array index error in the RV30 codec in RealNetworks RealPlayer before ...)
+	TODO: check
+CVE-2011-4248 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...)
+	TODO: check
+CVE-2011-4247 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...)
+	TODO: check
+CVE-2011-4246 (The AAC codec in RealNetworks RealPlayer before 15.0.0 and Mac ...)
+	TODO: check
+CVE-2011-4245 (The RealVideo renderer in RealNetworks RealPlayer before 15.0.0 and ...)
+	TODO: check
+CVE-2011-4244 (Heap-based buffer overflow in the RealVideo renderer in RealNetworks ...)
+	TODO: check
 CVE-2011-4243
 	RESERVED
 CVE-2011-4242
@@ -1082,8 +1103,8 @@
 	RESERVED
 CVE-2011-4161
 	RESERVED
-CVE-2011-4160
-	RESERVED
+CVE-2011-4160 (Unspecified vulnerability in HP Operations Agent 11.00 and Performance ...)
+	TODO: check
 CVE-2011-4159 (Unspecified vulnerability in System Administration Manager (SAM) in ...)
 	NOT-FOR-US: HP-UX
 CVE-2011-4158 (Unspecified vulnerability in HP Directories Support for ProLiant ...)
@@ -5338,7 +5359,7 @@
 CVE-2011-2697 (foomatic-rip-hplip in HP Linux Imaging and Printing (HPLIP) 3.11.5 ...)
 	- hplip 3.10.6-2 (bug #635549; medium)
 	NOTE: hplip might have been fixed earlier than stable, current versions use foomatic-rip
-        NOTE: from foomatic-filters: /usr/lib/cups/filter/foomatic-rip
+	NOTE: from foomatic-filters: /usr/lib/cups/filter/foomatic-rip
 	- foomatic-filters 4.0
 	NOTE: There two implementation of the affected filter: the version from foomatic-filters
 	NOTE: 4.0 is written in C and has been assigned CVE-2011-2964 and the version in




More information about the Secure-testing-commits mailing list