[Secure-testing-commits] r18454 - in data: . CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Thu Feb 16 09:51:24 UTC 2012


Author: jmm
Date: 2012-02-16 09:51:24 +0000 (Thu, 16 Feb 2012)
New Revision: 18454

Modified:
   data/CVE/list
   data/spu-candidates.txt
Log:
ncpfs no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-02-16 09:21:55 UTC (rev 18453)
+++ data/CVE/list	2012-02-16 09:51:24 UTC (rev 18454)
@@ -7800,8 +7800,7 @@
 CVE-2011-3329
 	RESERVED
 CVE-2011-3328 (The png_handle_cHRM function in pngrutil.c in libpng 1.5.4, when ...)
-	- libpng <unfixed>
-	TODO: check
+	- libpng <not-affected> (Introduced in 1.5.4, which was only in experimental and which has been fixed since then)
 CVE-2011-3327 (Heap-based buffer overflow in the ecommunity_ecom2str function in ...)
 	{DSA-2316-1}
 	- quagga 0.99.19-1
@@ -12491,11 +12490,11 @@
 	[squeeze] - open-vm-tools <no-dsa> (Contrib not supported)
 	[lenny] - open-vm-tools <no-dsa> (Contrib not supported)
 CVE-2011-1680 (ncpmount in ncpfs 2.2.6 and earlier does not remove the /etc/mtab~ ...)
-	- ncpfs <unfixed>
-	TODO: check
+	- ncpfs <unfixed> (low)
+	[squeeze] - ncpfs <no-dsa> (Minor issue)
 CVE-2011-1679 (ncpfs 2.2.6 and earlier attempts to use (1) ncpmount to append to the ...)
-	- ncpfs <unfixed>
-	TODO: check
+	- ncpfs <unfixed> (low)
+	[squeeze] - ncpfs <no-dsa> (Minor issue)
 CVE-2011-1678 (smbfs in Samba 3.5.8 and earlier attempts to use (1) mount.cifs to ...)
 	- samba 2:3.4.7~dfsg-2 (low)
 	- cifs-utils 2:5.1-1 (low)

Modified: data/spu-candidates.txt
===================================================================
--- data/spu-candidates.txt	2012-02-16 09:21:55 UTC (rev 18453)
+++ data/spu-candidates.txt	2012-02-16 09:51:24 UTC (rev 18454)
@@ -138,6 +138,10 @@
 
 --
 
+ncpfs (CVE-2011-1679, CVE-2011-1680)
+
+--
+
 net (CVE-2011-4091, CVE-2011-4093)
 #647318, #647317
 




More information about the Secure-testing-commits mailing list