[Secure-testing-commits] r18372 - data/CVE

Joey Hess joeyh at alioth.debian.org
Fri Feb 3 21:14:29 UTC 2012


Author: joeyh
Date: 2012-02-03 21:14:29 +0000 (Fri, 03 Feb 2012)
New Revision: 18372

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-02-03 11:32:17 UTC (rev 18371)
+++ data/CVE/list	2012-02-03 21:14:29 UTC (rev 18372)
@@ -1,3 +1,59 @@
+CVE-2012-1002
+	RESERVED
+CVE-2012-1001
+	RESERVED
+CVE-2012-1000
+	RESERVED
+CVE-2012-0999
+	RESERVED
+CVE-2012-0998
+	RESERVED
+CVE-2012-0997
+	RESERVED
+CVE-2012-0996
+	RESERVED
+CVE-2012-0995
+	RESERVED
+CVE-2012-0994
+	RESERVED
+CVE-2012-0993
+	RESERVED
+CVE-2012-0992
+	RESERVED
+CVE-2012-0991
+	RESERVED
+CVE-2012-0990
+	RESERVED
+CVE-2012-0989
+	RESERVED
+CVE-2012-0988
+	RESERVED
+CVE-2012-0987
+	RESERVED
+CVE-2012-0986
+	RESERVED
+CVE-2012-0985
+	RESERVED
+CVE-2012-0984
+	RESERVED
+CVE-2012-0983 (SQL injection vulnerability in Scriptsez.net Ez Album allows remote ...)
+	TODO: check
+CVE-2012-0982 (SQL injection vulnerability in search.php in Vastal I-Tech Agent Zone ...)
+	TODO: check
+CVE-2012-0981 (Directory traversal vulnerability in phpShowtime 2.0 allows remote ...)
+	TODO: check
+CVE-2012-0980 (SQL injection vulnerability in download.php in phux Download Manager ...)
+	TODO: check
+CVE-2012-0979 (Cross-site scripting (XSS) vulnerability in TWiki allows remote ...)
+	TODO: check
+CVE-2012-0978 (Stack-based buffer overflow in npjp2.dll in LuraWave JP2 Browser ...)
+	TODO: check
+CVE-2012-0977 (Stack-based buffer overflow in jp2_x.dll in LuraWave JP2 ActiveX ...)
+	TODO: check
+CVE-2012-0976 (Cross-site scripting (XSS) vulnerability in admin/EditForm in ...)
+	TODO: check
+CVE-2012-0975 (Cross-site scripting (XSS) vulnerability in misc.php in Image Hosting ...)
+	TODO: check
 CVE-2012-0974
 	RESERVED
 CVE-2012-0973
@@ -1165,8 +1221,7 @@
 	[lenny] - iceweasel <not-affected> (Lenny's iceweasel uses Xulrunner from the xulrunner source pkg)
 	- iceape 2.0.14-10
 	[lenny] - iceape <not-affected> (Only a stub package)
-CVE-2012-0448
-	RESERVED
+CVE-2012-0448 (Bugzilla 2.x and 3.x before 3.4.14, 3.5.x and 3.6.x before 3.6.8, ...)
 	- bugzilla <removed> (low)
 CVE-2012-0447 (Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and ...)
 	- icedove <unfixed>
@@ -1216,8 +1271,7 @@
 	[lenny] - iceape <not-affected> (Only a stub package)
 CVE-2012-0441
 	RESERVED
-CVE-2012-0440
-	RESERVED
+CVE-2012-0440 (Cross-site request forgery (CSRF) vulnerability in jsonrpc.cgi in ...)
 	- bugzilla <removed> (low)
 CVE-2012-0439
 	RESERVED
@@ -1483,8 +1537,8 @@
 	RESERVED
 CVE-2012-0315
 	RESERVED
-CVE-2012-0314
-	RESERVED
+CVE-2012-0314 (Multiple cross-site request forgery (CSRF) vulnerabilities on the ...)
+	TODO: check
 CVE-2012-0313 (Cross-site scripting (XSS) vulnerability in glucose 2 before stage 6.2 ...)
 	NOT-FOR-US: glucose
 CVE-2012-0312 (Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before ...)
@@ -2608,8 +2662,8 @@
 	RESERVED
 CVE-2011-4792
 	RESERVED
-CVE-2011-4791
-	RESERVED
+CVE-2011-4791 (DBServer.exe in HP Data Protector Media Operations 6.11 and earlier ...)
+	TODO: check
 CVE-2011-4790 (Unspecified vulnerability in HP Network Automation 7.5x, 7.6x, 9.0, ...)
 	TODO: check
 CVE-2011-4789 (Stack-based buffer overflow in magentservice.exe in the server in HP ...)
@@ -6840,46 +6894,46 @@
 	RESERVED
 CVE-2011-3464
 	RESERVED
-CVE-2011-3463
-	RESERVED
-CVE-2011-3462
-	RESERVED
+CVE-2011-3463 (WebDAV Sharing in Apple Mac OS X 10.7.x before 10.7.3 does not ...)
+	TODO: check
+CVE-2011-3462 (Time Machine in Apple Mac OS X before 10.7.3 does not verify the ...)
+	TODO: check
 CVE-2011-3461
 	RESERVED
-CVE-2011-3460
-	RESERVED
-CVE-2011-3459
-	RESERVED
-CVE-2011-3458
-	RESERVED
-CVE-2011-3457
-	RESERVED
+CVE-2011-3460 (Buffer overflow in QuickTime in Apple Mac OS X before 10.7.3 allows ...)
+	TODO: check
+CVE-2011-3459 (Off-by-one error in QuickTime in Apple Mac OS X before 10.7.3 allows ...)
+	TODO: check
+CVE-2011-3458 (QuickTime in Apple Mac OS X before 10.7.3 does not prevent access to ...)
+	TODO: check
+CVE-2011-3457 (The OpenGL implementation in Apple Mac OS X before 10.7.3 does not ...)
+	TODO: check
 CVE-2011-3456
 	RESERVED
 CVE-2011-3455
 	RESERVED
 CVE-2011-3454
 	RESERVED
-CVE-2011-3453
-	RESERVED
-CVE-2011-3452
-	RESERVED
+CVE-2011-3453 (Integer overflow in libresolv in Apple Mac OS X before 10.7.3 allows ...)
+	TODO: check
+CVE-2011-3452 (Internet Sharing in Apple Mac OS X before 10.7.3 does not preserve the ...)
+	TODO: check
 CVE-2011-3451
 	RESERVED
-CVE-2011-3450
-	RESERVED
-CVE-2011-3449
-	RESERVED
-CVE-2011-3448
-	RESERVED
-CVE-2011-3447
-	RESERVED
-CVE-2011-3446
-	RESERVED
+CVE-2011-3450 (CoreUI in Apple Mac OS X 10.7.x before 10.7.3 does not properly ...)
+	TODO: check
+CVE-2011-3449 (Use-after-free vulnerability in CoreText in Apple Mac OS X before ...)
+	TODO: check
+CVE-2011-3448 (Heap-based buffer overflow in CoreMedia in Apple Mac OS X before ...)
+	TODO: check
+CVE-2011-3447 (CFNetwork in Apple Mac OS X 10.7.x before 10.7.3 does not properly ...)
+	TODO: check
+CVE-2011-3446 (Apple Type Services (ATS) in Apple Mac OS X before 10.7.3 does not ...)
+	TODO: check
 CVE-2011-3445
 	RESERVED
-CVE-2011-3444
-	RESERVED
+CVE-2011-3444 (Address Book in Apple Mac OS X before 10.7.3 automatically switches to ...)
+	TODO: check
 CVE-2011-3443
 	RESERVED
 CVE-2011-3442 (The kernel in Apple iOS before 5.0.1 does not ensure the validity of ...)
@@ -9938,8 +9992,8 @@
 	RESERVED
 CVE-2011-2394
 	RESERVED
-CVE-2011-2393
-	RESERVED
+CVE-2011-2393 (The Neighbor Discovery (ND) protocol implementation in the IPv6 stack ...)
+	TODO: check
 CVE-2011-2392
 	RESERVED
 CVE-2011-2391
@@ -17117,10 +17171,10 @@
 	[squeeze] - linux-2.6 2.6.32-31
 CVE-2010-4564
 	RESERVED
-CVE-2010-4563
-	RESERVED
-CVE-2010-4562
-	RESERVED
+CVE-2010-4563 (The Linux kernel, when using IPv6, allows remote attackers to ...)
+	TODO: check
+CVE-2010-4562 (Microsoft Windows 2008, 7, Vista, 2003, 2000, and XP, when using IPv6, ...)
+	TODO: check
 CVE-2010-4561
 	RESERVED
 CVE-2010-4560




More information about the Secure-testing-commits mailing list