[Secure-testing-commits] r20045 - data/CVE

Raphael Geissert geissert at alioth.debian.org
Wed Aug 29 17:33:20 UTC 2012


Author: geissert
Date: 2012-08-29 17:33:20 +0000 (Wed, 29 Aug 2012)
New Revision: 20045

Modified:
   data/CVE/list
Log:
new libiberty issue, letodms fixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-08-29 11:24:14 UTC (rev 20044)
+++ data/CVE/list	2012-08-29 17:33:20 UTC (rev 20045)
@@ -272,7 +272,7 @@
 CVE-2009-5123 (The Antivirus component in Comodo Internet Security before ...)
 	TODO: check
 CVE-2012-XXXX [letodms XSS and CSRF]
-	- letodms <unfixed>
+	- letodms 3.3.7+dfsg-1
 	NOTE: http://www.openwall.com/lists/oss-security/2012/08/27/10
 CVE-2012-4667 (Multiple cross-site scripting (XSS) vulnerabilities in SquidClamav 5.x ...)
 	- squidclamav <unfixed> (bug #685398)
@@ -2729,8 +2729,11 @@
 	RESERVED
 	- linux 2.6.20-1
 	- linux-2.6 2.6.20-1
-CVE-2012-3509
+CVE-2012-3509 [libiberty _objalloc_alloc int overflow]
 	RESERVED
+	- binutils <unfixed>
+	NOTE: http://gcc.gnu.org/bugzilla/show_bug.cgi?id=54411
+	TODO: track down the affected packages
 CVE-2012-4668 (Cross-site scripting (XSS) vulnerability in Roundcube Webmail 0.8.1 ...)
 	- roundcube <unfixed> (bug #685475)
 	[squeeze] - roundcube <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list