[Secure-testing-commits] r19549 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Thu Jun 21 14:45:16 UTC 2012


Author: jmm
Date: 2012-06-21 14:45:15 +0000 (Thu, 21 Jun 2012)
New Revision: 19549

Modified:
   data/CVE/list
Log:
kadu issue fixed in sid, N/A for stable
jboss not affected


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-06-21 12:06:51 UTC (rev 19548)
+++ data/CVE/list	2012-06-21 14:45:15 UTC (rev 19549)
@@ -5465,9 +5465,7 @@
 	- clamav 0.97.5+dfsg-1 (low; bug #668273)
 	[squeeze] - clamav <no-dsa> (Minor issue)
 CVE-2012-1418 (Multiple unspecified vulnerabilities in Google Chrome before ...)
-	- chromium-browser <undetermined>
-	- webkit <undetermined>
-	NOTE: Might by a NFU as it affects specific devices.
+	NOT-FOR-US: Chrome books
 CVE-2012-1417
 	RESERVED
 CVE-2012-1416
@@ -5483,7 +5481,8 @@
 CVE-2012-1411
 	RESERVED
 CVE-2012-1410 (Multiple cross-site scripting (XSS) vulnerabilities in the History ...)
-	- kadu <undetermined>
+	- kadu 0.11.0-1
+	[squeeze] - kadu <not-affected> (Only affects >= 0.9)
 CVE-2012-1409 (Unspecified vulnerability in the Tiny Password ...)
 	NOT-FOR-US: Tiny Password
 CVE-2012-1408 (Unspecified vulnerability in the App Lock (com.cc.applock) application ...)
@@ -10288,7 +10287,7 @@
 	[lenny] - rocksndiamonds <no-dsa> (Contrib not supported)
 CVE-2011-4605
 	RESERVED
-	NOTE: seems to only affects jboss 5 according to https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4605 but I'm not so sure about jbossas4
+	- jbossas4 <not-affected> (Only builds a few libraries, not the full application server, #581226)
 CVE-2011-4604 [http://seclists.org/oss-sec/2011/q4/496]
 	RESERVED
 	- batmand-adv-kernelland <removed>




More information about the Secure-testing-commits mailing list