[Secure-testing-commits] r21015 - data/CVE

Joey Hess joeyh at alioth.debian.org
Tue Jan 22 21:14:37 UTC 2013


Author: joeyh
Date: 2013-01-22 21:14:37 +0000 (Tue, 22 Jan 2013)
New Revision: 21015

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-22 20:05:12 UTC (rev 21014)
+++ data/CVE/list	2013-01-22 21:14:37 UTC (rev 21015)
@@ -1,3 +1,33 @@
+CVE-2013-1413
+	RESERVED
+CVE-2013-1412
+	RESERVED
+CVE-2013-1411
+	RESERVED
+CVE-2013-1410
+	RESERVED
+CVE-2013-1409
+	RESERVED
+CVE-2013-1408
+	RESERVED
+CVE-2013-1407
+	RESERVED
+CVE-2013-1406
+	RESERVED
+CVE-2013-1405
+	RESERVED
+CVE-2013-1404
+	RESERVED
+CVE-2013-1403
+	RESERVED
+CVE-2013-1402
+	RESERVED
+CVE-2013-1401
+	RESERVED
+CVE-2013-1400
+	RESERVED
+CVE-2009-5134 (Buffer overflow in the "create torrent dialog" functionality in ...)
+	TODO: check
 CVE-2013-XXXX [buffer overflow in commandline parsing]
 	- swath 0.4.3-3 (low; bug #698189)
 	[squeeze] - swath <no-dsa> (Minor issue)
@@ -606,12 +636,12 @@
 	RESERVED
 CVE-2013-1111
 	RESERVED
-CVE-2013-1110
-	RESERVED
+CVE-2013-1110 (Cisco WebEx Training Center allow remote authenticated users to bypass ...)
+	TODO: check
 CVE-2013-1109 (Cross-site request forgery (CSRF) vulnerability in ...)
 	NOT-FOR-US: Cisco WebEx Training Center
-CVE-2013-1108
-	RESERVED
+CVE-2013-1108 (Cisco WebEx Training Center allows remote authenticated users to ...)
+	TODO: check
 CVE-2013-1107
 	RESERVED
 CVE-2013-1106
@@ -968,10 +998,10 @@
 	RESERVED
 CVE-2013-0930
 	RESERVED
-CVE-2013-0929
-	RESERVED
-CVE-2013-0928
-	RESERVED
+CVE-2013-0929 (Format string vulnerability in the _vsnsprintf function in rrobotd.exe ...)
+	TODO: check
+CVE-2013-0928 (The NetWorker command processor in rrobotd.exe in the Device Manager ...)
+	TODO: check
 CVE-2013-0927
 	RESERVED
 CVE-2013-0926
@@ -1720,12 +1750,12 @@
 	RESERVED
 CVE-2013-0658
 	RESERVED
-CVE-2013-0657
-	RESERVED
-CVE-2013-0656
-	RESERVED
-CVE-2013-0655
-	RESERVED
+CVE-2013-0657 (Stack-based buffer overflow in Schneider Electric Interactive ...)
+	TODO: check
+CVE-2013-0656 (Buffer overflow in a third-party ActiveX component in Siemens SIMATIC ...)
+	TODO: check
+CVE-2013-0655 (The client in Schneider Electric Software Update (SESU) Utility 1.0.x ...)
+	TODO: check
 CVE-2013-0654
 	RESERVED
 CVE-2013-0653
@@ -2208,10 +2238,10 @@
 	RESERVED
 CVE-2012-6397 (Cross-site scripting (XSS) vulnerability in Cisco WebEx Social ...)
 	NOT-FOR-US: Cisco WebEx Social
-CVE-2012-6396
-	RESERVED
-CVE-2012-6395
-	RESERVED
+CVE-2012-6396 (Cisco NX-OS on Nexus 7000 series switches does not properly handle ...)
+	TODO: check
+CVE-2012-6395 (Cisco Adaptive Security Appliances (ASA) devices with firmware 8.4 do ...)
+	TODO: check
 CVE-2012-6394
 	RESERVED
 CVE-2012-6393
@@ -2280,10 +2310,10 @@
 	RESERVED
 CVE-2012-6361
 	RESERVED
-CVE-2012-6360
-	RESERVED
-CVE-2012-6359
-	RESERVED
+CVE-2012-6360 (Cross-site scripting (XSS) vulnerability in IBM Intelligent Operations ...)
+	TODO: check
+CVE-2012-6359 (IBM Tivoli Federated Identity Manager (TFIM) 6.2.0 before 6.2.0.11, ...)
+	TODO: check
 CVE-2012-6358
 	RESERVED
 CVE-2012-6357
@@ -3565,8 +3595,7 @@
 	RESERVED
 CVE-2012-6114
 	RESERVED
-CVE-2012-6113 [PHP openssl_encrypt memory disclosure]
-	RESERVED
+CVE-2012-6113 (The openssl_encrypt function in ext/openssl/openssl.c in PHP 5.3.9 ...)
 	- php5 5.4.0~beta2-1
 	[squeeze] - php5 <not-affected> (Introduced in 5.3.9)
 	NOTE: Introduced in http://git.php.net/?p=php-src.git;a=commitdiff;h=095cbc48a8f0090f3b0abc6155f2b61943c9eafb
@@ -3780,10 +3809,10 @@
 	RESERVED
 CVE-2009-5133
 	RESERVED
-CVE-2012-6069
-	RESERVED
-CVE-2012-6068
-	RESERVED
+CVE-2012-6069 (Directory traversal vulnerability in the Runtime Toolkit in CODESYS ...)
+	TODO: check
+CVE-2012-6068 (The Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4.x does not ...)
+	TODO: check
 CVE-2012-6067 (freeFTPd.exe in freeFTPd through 1.0.11 allows remote attackers to ...)
 	NOT-FOR-US: freeFTPd
 CVE-2012-6066 (freeSSHd.exe in freeSSHd through 1.2.6 allows remote attackers to ...)
@@ -4831,8 +4860,8 @@
 	RESERVED
 CVE-2012-5718
 	RESERVED
-CVE-2012-5717
-	RESERVED
+CVE-2012-5717 (Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x ...)
+	TODO: check
 CVE-2012-5716
 	RESERVED
 CVE-2012-5715
@@ -6225,10 +6254,10 @@
 	RESERVED
 CVE-2012-5186
 	RESERVED
-CVE-2012-5185
-	RESERVED
-CVE-2012-5184
-	RESERVED
+CVE-2012-5185 (Directory traversal vulnerability in the Olive Toast Documents Pro ...)
+	TODO: check
+CVE-2012-5184 (Cross-site scripting (XSS) vulnerability in the Olive Toast Documents ...)
+	TODO: check
 CVE-2012-5183 (The Loctouch application 3.4.6 and earlier for Android allows ...)
 	NOT-FOR-US: Loctouch application for Android
 CVE-2012-5182 (The Loctouch application 3.4.6 and earlier for Android does not ...)
@@ -13861,8 +13890,8 @@
 	RESERVED
 CVE-2012-2292
 	RESERVED
-CVE-2012-2291
-	RESERVED
+CVE-2012-2291 (EMC Avamar Client 4.x, 5.x, and 6.x on HP-UX and Mac OS X, and the EMC ...)
+	TODO: check
 CVE-2012-2290 (The client in EMC NetWorker Module for Microsoft Applications (NMM) ...)
 	NOT-FOR-US: EMC NetWorker Module for Microsoft Applications
 CVE-2012-2289 (EMC ApplicationXtender Desktop before 6.5 SP2 and ApplicationXtender ...)
@@ -44595,8 +44624,8 @@
 	NOT-FOR-US: yatse extension for typo3
 CVE-2010-1004 (SQL injection vulnerability in the Yet another TYPO3 search engine ...)
 	NOT-FOR-US: yatse extension for typo3
-CVE-2009-4738
-	RESERVED
+CVE-2009-4738 (Unspecified vulnerability in JustSystems Corporation ATOK 2006 through ...)
+	TODO: check
 CVE-2009-4737 (Stack-based buffer overflow in JustSystems Corporation Ichitaro 13, ...)
 	NOT-FOR-US: JustSystems Corporation Ichitaro
 CVE-2009-4736 (Cross-site scripting (XSS) vulnerability in search.php in CommonSense ...)




More information about the Secure-testing-commits mailing list