[Secure-testing-commits] r20157 - data/CVE

Joey Hess joeyh at alioth.debian.org
Thu Sep 13 21:14:19 UTC 2012


Author: joeyh
Date: 2012-09-13 21:14:18 +0000 (Thu, 13 Sep 2012)
New Revision: 20157

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-09-13 19:17:54 UTC (rev 20156)
+++ data/CVE/list	2012-09-13 21:14:18 UTC (rev 20157)
@@ -1,3 +1,21 @@
+CVE-2012-4902
+	RESERVED
+CVE-2012-4901
+	RESERVED
+CVE-2012-4900
+	RESERVED
+CVE-2012-4899
+	RESERVED
+CVE-2012-4898
+	RESERVED
+CVE-2012-4897
+	RESERVED
+CVE-2012-4896
+	RESERVED
+CVE-2012-4895
+	RESERVED
+CVE-2012-4894
+	RESERVED
 CVE-2012-4893 (Multiple cross-site request forgery (CSRF) vulnerabilities in ...)
 	TODO: check
 CVE-2012-4892 (Multiple cross-site scripting (XSS) vulnerabilities in FlatnuX CMS ...)
@@ -761,8 +779,8 @@
 	RESERVED
 CVE-2012-4630
 	RESERVED
-CVE-2012-4629
-	RESERVED
+CVE-2012-4629 (The Cisco ASA-CX Context-Aware Security module before 9.0.2-103 for ...)
+	TODO: check
 CVE-2012-4628
 	RESERVED
 CVE-2012-4627
@@ -1371,6 +1389,7 @@
 	- openjdk-6 <not-affected> (Only affects Java 7)
 CVE-2012-4419
 	RESERVED
+	{DSA-2548-1}
 	- tor 0.2.3.22-rc-1
 	NOTE: http://www.openwall.com/lists/oss-security/2012/09/12/5
 	NOTE: https://gitweb.torproject.org/tor.git/blob/release-0.2.2:/ReleaseNotes
@@ -2524,8 +2543,8 @@
 	RESERVED
 CVE-2012-3936
 	RESERVED
-CVE-2012-3935
-	RESERVED
+CVE-2012-3935 (Cisco Unified Presence (CUP) before 8.6(3) and Jabber Extensible ...)
+	TODO: check
 CVE-2012-3934
 	RESERVED
 CVE-2012-3933
@@ -2998,34 +3017,34 @@
 	RESERVED
 CVE-2012-3713
 	RESERVED
-CVE-2012-3712
-	RESERVED
-CVE-2012-3711
-	RESERVED
-CVE-2012-3710
-	RESERVED
-CVE-2012-3709
-	RESERVED
-CVE-2012-3708
-	RESERVED
-CVE-2012-3707
-	RESERVED
-CVE-2012-3706
-	RESERVED
-CVE-2012-3705
-	RESERVED
-CVE-2012-3704
-	RESERVED
-CVE-2012-3703
-	RESERVED
-CVE-2012-3702
-	RESERVED
-CVE-2012-3701
-	RESERVED
-CVE-2012-3700
-	RESERVED
-CVE-2012-3699
-	RESERVED
+CVE-2012-3712 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3711 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3710 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3709 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3708 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3707 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3706 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3705 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3704 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3703 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3702 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3701 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3700 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3699 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3698 (Apple Xcode before 4.4 does not properly compose a designated ...)
 	NOT-FOR-US: Apple Xcode
 CVE-2012-3697 (WebKit in Apple Safari before 6.0 does not properly handle file: URLs, ...)
@@ -3038,24 +3057,24 @@
 	- webkit <undetermined>
 CVE-2012-3693 (Incomplete blacklist vulnerability in WebKit in Apple Safari before ...)
 	- webkit <undetermined>
-CVE-2012-3692
-	RESERVED
+CVE-2012-3692 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3691 (WebKit in Apple Safari before 6.0 does not properly handle Cascading ...)
 	- webkit <undetermined>
 CVE-2012-3690 (WebKit in Apple Safari before 6.0 does not properly handle ...)
 	- webkit <undetermined>
 CVE-2012-3689 (WebKit in Apple Safari before 6.0 does not properly handle ...)
 	- webkit <undetermined>
-CVE-2012-3688
-	RESERVED
-CVE-2012-3687
-	RESERVED
+CVE-2012-3688 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3687 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3686 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3685
-	RESERVED
-CVE-2012-3684
-	RESERVED
+CVE-2012-3685 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3684 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3683 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3682 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
@@ -3068,20 +3087,20 @@
 	- webkit <undetermined>
 CVE-2012-3678 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3677
-	RESERVED
-CVE-2012-3676
-	RESERVED
-CVE-2012-3675
-	RESERVED
+CVE-2012-3677 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3676 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3675 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3674 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3673
-	RESERVED
-CVE-2012-3672
-	RESERVED
-CVE-2012-3671
-	RESERVED
+CVE-2012-3673 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3672 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3671 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3670 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3669 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
@@ -3102,42 +3121,42 @@
 	RESERVED
 CVE-2012-3661 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3660
-	RESERVED
-CVE-2012-3659
-	RESERVED
-CVE-2012-3658
-	RESERVED
-CVE-2012-3657
-	RESERVED
+CVE-2012-3660 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3659 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3658 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3657 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3656 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3655 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3654
-	RESERVED
+CVE-2012-3654 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3653 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3652
-	RESERVED
-CVE-2012-3651
-	RESERVED
+CVE-2012-3652 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3651 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3650 (WebKit in Apple Safari before 6.0 accesses uninitialized memory ...)
 	- webkit <undetermined>
-CVE-2012-3649
-	RESERVED
-CVE-2012-3648
-	RESERVED
-CVE-2012-3647
-	RESERVED
+CVE-2012-3649 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3648 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3647 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3646 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3645 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3644 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3643
-	RESERVED
+CVE-2012-3643 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3642 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3641 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
@@ -3158,8 +3177,8 @@
 	- webkit <undetermined>
 CVE-2012-3633 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3632
-	RESERVED
+CVE-2012-3632 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3631 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3630 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
@@ -3174,32 +3193,32 @@
 	- webkit <undetermined>
 CVE-2012-3625 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3624
-	RESERVED
-CVE-2012-3623
-	RESERVED
-CVE-2012-3622
-	RESERVED
-CVE-2012-3621
-	RESERVED
+CVE-2012-3624 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3623 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3622 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3621 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3620 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3619
 	RESERVED
 CVE-2012-3618 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3617
-	RESERVED
-CVE-2012-3616
-	RESERVED
+CVE-2012-3617 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3616 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3615 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3614
-	RESERVED
-CVE-2012-3613
-	RESERVED
-CVE-2012-3612
-	RESERVED
+CVE-2012-3614 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3613 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3612 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3611 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3610 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
@@ -3208,26 +3227,26 @@
 	- webkit <undetermined>
 CVE-2012-3608 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3607
-	RESERVED
-CVE-2012-3606
-	RESERVED
+CVE-2012-3607 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3606 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3605 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3604 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3603 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3602
-	RESERVED
-CVE-2012-3601
-	RESERVED
+CVE-2012-3602 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
+CVE-2012-3601 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3600 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3599 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
-CVE-2012-3598
-	RESERVED
+CVE-2012-3598 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...)
+	TODO: check
 CVE-2012-3597 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
 	- webkit <undetermined>
 CVE-2012-3596 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...)
@@ -3418,9 +3437,11 @@
 	- linux <unfixed>
 	- linux-2.6 <not-affected> (Introduced in 3.1)
 CVE-2012-3519 (routerlist.c in Tor before 0.2.2.38 uses a different amount of time ...)
+	{DSA-2548-1}
 	- tor 0.2.3.20-rc-1 (low)
 	[squeeze] - tor <no-dsa> (Will be fixed in stable-proposed-updates)
 CVE-2012-3518 (The networkstatus_parse_vote_from_string function in routerparse.c in ...)
+	{DSA-2548-1}
 	- tor 0.2.3.20-rc-1 (low)
 	[squeeze] - tor <no-dsa> (Will be fixed in stable-proposed-updates)
 CVE-2012-3517 (Use-after-free vulnerability in dns.c in Tor before 0.2.2.38 might ...)




More information about the Secure-testing-commits mailing list