[Secure-testing-commits] r20177 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Mon Sep 17 07:30:34 UTC 2012


Author: jmm
Date: 2012-09-17 07:30:34 +0000 (Mon, 17 Sep 2012)
New Revision: 20177

Modified:
   data/CVE/list
Log:
libxcrypt fixed
libvirt fixed, not present in stable
apache trafficserver now in the archive


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-09-16 13:11:39 UTC (rev 20176)
+++ data/CVE/list	2012-09-17 07:30:34 UTC (rev 20177)
@@ -1405,7 +1405,8 @@
 	RESERVED
 CVE-2012-4423 [libvirt DoS]
 	RESERVED
-	- libvirt <unfixed> (bug #687598)
+	- libvirt 0.9.12-5 (bug #687598)
+	[squeeze] - libvirt <not-affected> (Vulnerable code not present)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=857133
 	NOTE: http://www.openwall.com/lists/oss-security/2012/09/13/11
 CVE-2012-4422
@@ -19951,7 +19952,7 @@
 	- postgresql-9.0 9.0.5-1 (bug #631285)
 	- postgresql-9.1 9.1~rc1-1
 	- php5 5.3.6-13 (bug #631347)
-	- libxcrypt <unfixed> (bug #679628)
+	- libxcrypt 1:2.4-1.1 (bug #679628)
 	NOTE: http://openwall.com/lists/oss-security/2011/06/20/2
 CVE-2011-2482
 	RESERVED
@@ -31954,7 +31955,7 @@
 	{DSA-2107-1}
 	- couchdb 0.11.0-1 (low; bug #594412)
 CVE-2010-2952 (Apache Traffic Server before 2.0.1, and 2.1.x before 2.1.2-unstable, ...)
-	NOT-FOR-US: Apache Traffic Server
+	- trafficserver <not-affected> (Fixed before initial release)
 CVE-2010-2951 (dns_internal.cc in Squid 3.1.6, when IPv6 DNS resolution is not ...)
 	- squid3 3.1.6-1.2 (bug #599709)
 	[lenny] - squid3 <not-affected> (vulnerable code introduced in 3.1.6)




More information about the Secure-testing-commits mailing list