[Secure-testing-commits] r18994 - data/CVE
Michael Gilbert
mgilbert at alioth.debian.org
Wed Apr 18 04:17:04 UTC 2012
Author: mgilbert
Date: 2012-04-18 04:17:03 +0000 (Wed, 18 Apr 2012)
New Revision: 18994
Modified:
data/CVE/list
Log:
fix some source package names
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2012-04-18 04:16:34 UTC (rev 18993)
+++ data/CVE/list 2012-04-18 04:17:03 UTC (rev 18994)
@@ -2382,8 +2382,8 @@
NOTE: http://www.openwall.com/lists/oss-security/2012/03/14/3
CVE-2012-1176 [buffer overflow in python-pyfribidi]
RESERVED
- - python-pyfribidi 0.11.0-1 (bug #663189)
- [squeeze] - python-pyfribidi <no-dsa> (Minor issue)
+ - pyfribidi 0.11.0-1 (bug #663189)
+ [squeeze] - pyfribidi <no-dsa> (Minor issue)
CVE-2012-1175 [gnash integer overflow]
RESERVED
{DSA-2435-1}
@@ -2658,11 +2658,11 @@
RESERVED
NOT-FOR-US: JBoss Operations Network
CVE-2012-1099 (Cross-site scripting (XSS) vulnerability in ...)
- - ruby-actionpack 2.3.14-3 (bug #668607)
+ - ruby-actionpack-2.3 2.3.14-3 (bug #668607)
- rails <not-affected> (code lives within ruby-actionpack in unstable)
[squeeze] - rails <unfixed>
CVE-2012-1098 (Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before ...)
- - ruby-actionpack <unfixed> (bug #668977)
+ - ruby-actionpack-2.3 <unfixed> (bug #668977)
- rails <not-affected> (code lives within ruby-actionpack in unstable)
[squeeze] - rails <unfixed>
CVE-2012-1097
@@ -3190,7 +3190,7 @@
- linux-2.6 2.6.33-1
CVE-2012-0878 [python-pastescript improper privilege dropping]
RESERVED
- - python-pastescript <unfixed> (low; bug #661061)
+ - pastescript <unfixed> (low; bug #661061)
CVE-2012-0877
RESERVED
CVE-2012-0876
@@ -3388,8 +3388,8 @@
RESERVED
- rpm 4.9.1.3-1 (bug #667031)
CVE-2012-0814 (The auth_parse_options function in auth-options.c in sshd in OpenSSH ...)
- - openssh-server 1:5.6p1-1 (low; bug #657445)
- [squeeze] - openssh-server <no-dsa> (Minor issue)
+ - openssh 1:5.6p1-1 (low; bug #657445)
+ [squeeze] - openssh <no-dsa> (Minor issue)
CVE-2012-0813 [wicd cleartext passwords]
RESERVED
- wicd 1.7.1~b3-4 (unimportant; bug #652417)
@@ -8045,7 +8045,7 @@
- ruby1.9.1 <not-affected> (Only affected trunk versions)
CVE-2011-4120 [authentication bypass by pressing ctrl-d]
RESERVED
- - libpam-yubico 2.10-1
+ - yubico-pam 2.10-1
CVE-2011-4119
RESERVED
CVE-2011-4117
@@ -33968,7 +33968,7 @@
CVE-2009-4484 (Multiple stack-based buffer overflows in the CertDecoder::GetName ...)
{DSA-1997-1}
- mysql-dfsg-5.0 <removed> (medium)
- - mysql-dfsg-5.1 5.1.41-4 (medium)
+ - mysql-5.1 5.1.41-4 (medium)
NOTE: http://intevydis.blogspot.com/2010/01/mysq-yassl-stack-overflow.html
NOTE: http://bazaar.launchpad.net/~mysql/mysql-server/mysql-5.0/revision/2837.1.1
CVE-2009-4483 (Unspecified vulnerability in LDAP3A.exe in MailSite 8.0.4 allows ...)
@@ -35250,7 +35250,7 @@
CVE-2009-4074 (The XSS Filter in Microsoft Internet Explorer 8 allows remote ...)
NOT-FOR-US: Microsoft Internet Explorer 8
CVE-2008-7247 (sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, ...)
- - mysql-dfsg-5.1 <unfixed> (low; bug #569484)
+ - mysql-5.1 <unfixed> (low; bug #569484)
- mysql-dfsg-5.0 <not-affected> (Vulnerable code not present)
CVE-2009-4214 (Cross-site scripting (XSS) vulnerability in the strip_tags function in ...)
{DSA-2301-1 DSA-2260-1}
@@ -35380,7 +35380,7 @@
- kvm <removed> (low; bug #562075)
CVE-2009-4030 (MySQL 5.1.x before 5.1.41 allows local users to bypass certain ...)
{DSA-1997-1}
- - mysql-dfsg-5.1 5.1.43-1
+ - mysql-5.1 5.1.43-1
- mysql-dfsg-5.0 <removed>
CVE-2009-4029 (The (1) dist or (2) distcheck rules in GNU Automake 1.11.1, 1.10.3, ...)
- automake 1:1.4-p6-13.1
@@ -35394,7 +35394,7 @@
NOTE: spu will be released to avoid spreading the bug even further
NOTE: http://lists.gnu.org/archive/html/automake/2009-12/msg00012.html
CVE-2009-4028 (The vio_verify_callback function in viosslfactories.c in MySQL 5.0.x ...)
- - mysql-dfsg-5.1 <not-affected> (Vulnerable code not present)
+ - mysql-5.1 <not-affected> (Vulnerable code not present)
- mysql-dfsg-5.0 <not-affected> (Vulnerable code not present)
NOTE: built with --without-openssl
CVE-2009-4027 (Race condition in the mac80211 subsystem in the Linux kernel before ...)
@@ -35437,7 +35437,7 @@
- linux-2.6.24 <removed> (medium)
CVE-2009-4019 (mysqld in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41 does not ...)
{DSA-1997-1}
- - mysql-dfsg-5.1 5.1.41-1
+ - mysql-5.1 5.1.41-1
- mysql-dfsg-5.0 <removed>
NOTE: http://dev.mysql.com/doc/refman/5.1/en/news-5-1-41.html
NOTE: http://dev.mysql.com/doc/refman/5.0/en/news-5-0-88.html
@@ -46162,7 +46162,7 @@
NOT-FOR-US: phpScheduleIt
CVE-2009-0819 (sql/item_xmlfunc.cc in MySQL 5.1 before 5.1.32 and 6.0 before 6.0.10 ...)
- mysql-dfsg-5.0 <not-affected> (Vulnerable code introduced in 5.1.5)
- - mysql-dfsg-5.1 5.1.32-1
+ - mysql-5.1 5.1.32-1
CVE-2009-0818 (Cross-site scripting (XSS) vulnerability in the ...)
NOT-FOR-US: Taxonomy Theme module for Drupal
CVE-2009-0817 (Cross-site scripting (XSS) vulnerability in the Protected Node module ...)
More information about the Secure-testing-commits
mailing list