[Secure-testing-commits] r22690 - data/CVE

Joey Hess joeyh at alioth.debian.org
Wed Jun 19 21:14:29 UTC 2013


Author: joeyh
Date: 2013-06-19 21:14:29 +0000 (Wed, 19 Jun 2013)
New Revision: 22690

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-06-19 20:54:06 UTC (rev 22689)
+++ data/CVE/list	2013-06-19 21:14:29 UTC (rev 22690)
@@ -1,10 +1,25 @@
-CVE-2013-4616
+CVE-2013-4622 (The 3G Mobile Hotspot feature on the HTC Droid Incredible has a ...)
+	TODO: check
+CVE-2013-4621
+	RESERVED
+CVE-2013-4620
+	RESERVED
+CVE-2013-4619
+	RESERVED
+CVE-2013-4618
+	RESERVED
+CVE-2013-4617
+	RESERVED
+CVE-2013-4616 (The WifiPasswordController generateDefaultPassword method in ...)
 	NOT-FOR-US: Apple iOS
 CVE-2013-4615
+	RESERVED
 	NOT-FOR-US: EMC Smarts Network Configuration Manager
 CVE-2013-4614
+	RESERVED
 	NOT-FOR-US: EMC Smarts Network Configuration Manager
 CVE-2013-4613
+	RESERVED
 	NOT-FOR-US: EMC RSA Data Protection Manager Appliance
 CVE-2013-4612 (Multiple cross-site scripting (XSS) vulnerabilities in REDCap before ...)
 	NOT-FOR-US: REDCap
@@ -1418,8 +1433,7 @@
 	RESERVED
 CVE-2013-3928
 	RESERVED
-CVE-2013-3927
-	RESERVED
+CVE-2013-3927 (Unspecified vulnerability in the client library in Siemens COMOS 9.2 ...)
 	NOT-FOR-US: Siemens COMOS
 CVE-2013-3926
 	RESERVED
@@ -1781,13 +1795,11 @@
 	RESERVED
 CVE-2013-3745
 	RESERVED
-CVE-2013-3744
-	RESERVED
+CVE-2013-3744 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (Only affects Java 7)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
-CVE-2013-3743
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-3743 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 CVE-2013-3741
 	RESERVED
@@ -2039,16 +2051,13 @@
 	RESERVED
 CVE-2013-3648
 	RESERVED
-CVE-2013-3647
-	RESERVED
+CVE-2013-3647 (The WebView class in the Cybozu Live application before 2.0.1 for ...)
 	NOT-FOR-US: Cybozu Live for Android
-CVE-2013-3646
-	RESERVED
+CVE-2013-3646 (The Cybozu Live application before 2.0.1 for Android allows remote ...)
 	NOT-FOR-US: Cybozu Live for Android
 CVE-2013-3645 (Cross-site scripting (XSS) vulnerability in the Orchard.Comments ...)
 	NOT-FOR-US: Orchard
-CVE-2013-3644
-	RESERVED
+CVE-2013-3644 (Unspecified vulnerability in JustSystems Ichitaro 2006 through 2013; ...)
 	NOT-FOR-US: JustSystems Ichitaro
 CVE-2013-3643 (The Galapagos Browser application for Android does not properly ...)
 	TODO: check
@@ -4743,122 +4752,95 @@
 	NOTE: Versions affected: 1.8.0 to 1.8.5
 CVE-2013-2474
 	RESERVED
-CVE-2013-2473
-	RESERVED
+CVE-2013-2473 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2472
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2472 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2471
-	RESERVED
+CVE-2013-2471 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2470
-	RESERVED
+CVE-2013-2470 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2469
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2469 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2468
-	RESERVED
+CVE-2013-2468 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
-CVE-2013-2467
-	RESERVED
+CVE-2013-2467 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (Only affects Java 5)
 	- openjdk-7 <not-affected> (Only affects Java 5)
-CVE-2013-2466
-	RESERVED
+CVE-2013-2466 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
-CVE-2013-2465
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2465 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2464
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2464 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2463
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2463 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2462
-	RESERVED
+CVE-2013-2462 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (Only affects Java 7)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
-CVE-2013-2461
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2461 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2460
-	RESERVED
- 	- openjdk-6 <not-affected> (Only affects Java 7)
+CVE-2013-2460 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <not-affected> (Only affects Java 7)
 	- openjdk-7 <unfixed>
-CVE-2013-2459
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2459 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2458
-	RESERVED
-CVE-2013-2457
-	RESERVED
-CVE-2013-2456
-	RESERVED
-CVE-2013-2455
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2458 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	TODO: check
+CVE-2013-2457 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	TODO: check
+CVE-2013-2456 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	TODO: check
+CVE-2013-2455 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2454
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2454 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2453
-	RESERVED
-CVE-2013-2452
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2453 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	TODO: check
+CVE-2013-2452 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2451
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2451 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2450
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2450 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2449
-	RESERVED
- 	- openjdk-6 <not-affected> (Only affects Java 7)
+CVE-2013-2449 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <not-affected> (Only affects Java 7)
 	- openjdk-7 <unfixed>
-CVE-2013-2448
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2448 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2447
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2447 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2446
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2446 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2445
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2445 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2444
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2444 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
-CVE-2013-2443
-	RESERVED
-CVE-2013-2442
-	RESERVED
+CVE-2013-2443 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	TODO: check
+CVE-2013-2442 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 CVE-2013-2441 (Unspecified vulnerability in the Agile EDM component in Oracle Supply ...)
@@ -4872,8 +4854,7 @@
 CVE-2013-2438 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (JavaFX not part of OpenJDK)
 	- openjdk-7 <not-affected> (JavaFX not part of OpenJDK)
-CVE-2013-2437
-	RESERVED
+CVE-2013-2437 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 CVE-2013-2436 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
@@ -4949,8 +4930,8 @@
 	- openjdk-7 <not-affected> (JavaFX not part of OpenJDK)
 CVE-2013-2413 (Unspecified vulnerability in the Siebel Enterprise Application ...)
 	NOT-FOR-US: Oracle Siebel CRM
-CVE-2013-2412
-	RESERVED
+CVE-2013-2412 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	TODO: check
 CVE-2013-2411 (Unspecified vulnerability in the Primavera P6 Enterprise Project ...)
 	NOT-FOR-US: Oracle Primavera Products
 CVE-2013-2410 (Unspecified vulnerability in the PeopleSoft Enterprise HRMS component ...)
@@ -4959,9 +4940,8 @@
 	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2408 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
 	NOT-FOR-US: Oracle PeopleSoft Products
-CVE-2013-2407
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-2407 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 CVE-2013-2406 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
 	NOT-FOR-US: Oracle PeopleSoft Products
@@ -4975,8 +4955,7 @@
 	NOT-FOR-US: Oracle PeopleSoft Products
 CVE-2013-2401 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
 	NOT-FOR-US: Oracle PeopleSoft Products
-CVE-2013-2400
-	RESERVED
+CVE-2013-2400 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
 	- openjdk-6 <not-affected> (Only affects Java 7)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 CVE-2013-2399 (Unspecified vulnerability in the Siebel Call Center component in ...)
@@ -5485,6 +5464,7 @@
 	RESERVED
 CVE-2013-2175
 	RESERVED
+	{DSA-2711-1}
 	- haproxy 1.4.24-1
 CVE-2013-2174
 	RESERVED
@@ -6454,6 +6434,7 @@
 CVE-2013-1913
 	RESERVED
 CVE-2013-1912 (Buffer overflow in HAProxy 1.4 through 1.4.22 and 1.5-dev through ...)
+	{DSA-2711-1}
 	- haproxy 1.4.23-1 (bug #704611)
 	NOTE: http://git.1wt.eu/web?p=haproxy-1.4.git;a=commitdiff;h=dc80672211
 CVE-2013-1911 (lib/ldoce/word.rb in the ldoce 0.0.2 gem for Ruby allows remote ...)
@@ -7470,8 +7451,8 @@
 	[wheezy] - wireshark 1.8.2-5wheezy1
 	NOTE: Upstream bug: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=7871
 	NOTE: http://anonsvn.wireshark.org/viewvc?view=revision&revision=45646
-CVE-2013-1571
-	RESERVED
+CVE-2013-1571 (Unspecified vulnerability in the Javadoc component in Oracle Java SE 7 ...)
+	TODO: check
 CVE-2013-1570 (Unspecified vulnerability in Oracle MySQL 5.6.10 and earlier allows ...)
 	- mysql-5.5 <not-affected> (Only affects MySQL 5.6)
 	- mysql-5.1 <not-affected> (Only affects MySQL 5.6)
@@ -7641,9 +7622,8 @@
 	- mysql-5.1 <not-affected> (Only affects MySQL 5.5 and 5.6)
 CVE-2013-1501 (Unspecified vulnerability in the Oracle iStore component in Oracle ...)
 	NOT-FOR-US: Oracle E-Business Suite
-CVE-2013-1500
-	RESERVED
- 	- openjdk-6 <unfixed>
+CVE-2013-1500 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...)
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 CVE-2013-1499 (Unspecified vulnerability in Oracle Sun Solaris 11 allows local users ...)
 	NOT-FOR-US: Solaris
@@ -8405,8 +8385,7 @@
 	NOT-FOR-US: Cisco WebEx Meetings Server
 CVE-2013-1204 (Memory leak in the SNMP process in Cisco IOS XR allows remote ...)
 	NOT-FOR-US: Cisco IOS XR
-CVE-2013-1203
-	RESERVED
+CVE-2013-1203 (Cisco ASA CX Context-Aware Security Software allows remote attackers ...)
 	NOT-FOR-US: Cisco ASA
 CVE-2013-1202
 	RESERVED
@@ -10435,8 +10414,8 @@
 	NOT-FOR-US: IBM Domino
 CVE-2013-0485
 	RESERVED
-CVE-2013-0484
-	RESERVED
+CVE-2013-0484 (The server process in IBM Cognos TM1 10.1.x before 10.1.1 FP1 allows ...)
+	TODO: check
 CVE-2013-0483 (The login component in SOAP Gateway in IBM IMS Enterprise Suite 1.1, ...)
 	NOT-FOR-US: IBM IMS Enterprise Suite
 CVE-2013-0482 (IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.29, 8.0 before ...)
@@ -20907,6 +20886,7 @@
 CVE-2012-2943 (CRLF injection vulnerability in cryptographp.inc.php in Cryptographp ...)
 	NOT-FOR-US: Cryptographp
 CVE-2012-2942 (Buffer overflow in the trash buffer in the header capture ...)
+	{DSA-2711-1}
 	- haproxy 1.4.23-1 (bug #674447)
 	NOTE: According to upstream information this only was fixed in 1.4.21
 	NOTE: only a issue if using non-default value for global.tune.bufsize configuration option
@@ -22126,15 +22106,15 @@
 	NOTE: https://bitcointalk.org/index.php?topic=81749.0
 CVE-2012-2458
 	RESERVED
- 	- openjdk-6 <not-affected> (Only affects Java 7)
+	- openjdk-6 <not-affected> (Only affects Java 7)
 	- openjdk-7 <unfixed>
 CVE-2012-2457
 	RESERVED
- 	- openjdk-6 <unfixed>
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 CVE-2012-2456
 	RESERVED
- 	- openjdk-6 <unfixed>
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 CVE-2012-2455 (Advanced Productivity Software DTE Axiom before 12.3.3 does not ...)
 	NOT-FOR-US: Advanced Productivity Software DTE Axiom
@@ -22142,7 +22122,7 @@
 	RESERVED
 CVE-2012-2453
 	RESERVED
- 	- openjdk-6 <unfixed>
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 CVE-2012-2452
 	RESERVED
@@ -22167,7 +22147,7 @@
 	RESERVED
 CVE-2012-2443
 	RESERVED
- 	- openjdk-6 <unfixed>
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 CVE-2012-2442 (Buffer overflow in the Video Manager in Nokia PC Suite 7.1.180.64 and ...)
 	NOT-FOR-US: Nokia PC Suite
@@ -22227,7 +22207,7 @@
 	RESERVED
 CVE-2012-2412
 	RESERVED
- 	- openjdk-6 <unfixed>
+	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 CVE-2012-2411 (Buffer overflow in RealNetworks RealPlayer before 15.0.4.53, and ...)
 	NOT-FOR-US: RealNetworks RealPlayer




More information about the Secure-testing-commits mailing list