[Secure-testing-commits] r40335 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sat Mar 12 05:34:40 UTC 2016
Author: carnil
Date: 2016-03-12 05:34:39 +0000 (Sat, 12 Mar 2016)
New Revision: 40335
Modified:
data/CVE/list
Log:
Mark some ancient CVEs for firefox as fixed in newest version since now reentered the archive
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-03-11 21:20:00 UTC (rev 40334)
+++ data/CVE/list 2016-03-12 05:34:39 UTC (rev 40335)
@@ -170708,7 +170708,8 @@
NOTE: https://bugzilla.mozilla.org/show_bug.cgi?id=367538
CVE-2007-0801 (The nsExternalAppHandler::SetUpTempFile function in Mozilla Firefox ...)
- iceweasel 2.0.0.2+dfsg-1 (low)
- - firefox <removed> (low)
+ - firefox 45.0-1 (low)
+ - firefox-esr 45.0esr-1 (low)
- iceape 1.0.8-1 (low)
- xulrunner 1.8.0.10-1 (low)
CVE-2007-0800 (Cross-zone vulnerability in Mozilla Firefox 1.5.0.9 considers blocked ...)
@@ -173481,7 +173482,8 @@
NOT-FOR-US: Vortex Blog
CVE-2006-6585 (The Extensions manager in Mozilla Firefox 2.0 does not properly ...)
- iceweasel 2.0.0.1+dfsg-1
- - firefox <removed>
+ - firefox 45.0-1
+ - firefox-esr 45.0esr-1
CVE-2006-6584 (Multiple buffer overflows in italkplus (Italk+) before 0.92.1 allow ...)
NOT-FOR-US: italkplus (Italk+)
CVE-2006-6583 (ScriptMate User Manager 2.1 and earlier allow remote attackers to ...)
@@ -173688,7 +173690,8 @@
- iceweasel 2.0.0.1+dfsg-1 (high)
- xulrunner 1.8.0.9-1 (high)
- iceape 1.0.7-1 (high)
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
NOTE: Flaw was introduced in Firefox 1.5.0.4
- icedove 1.5.0.9.dfsg1-1 (high)
CVE-2006-6503 (Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird ...)
@@ -173697,7 +173700,8 @@
- iceweasel 2.0.0.1+dfsg-1 (high)
- xulrunner 1.8.0.9-1 (high)
- iceape 1.0.7-1 (high)
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- mozilla <removed> (high)
- mozilla-firefox <removed> (high)
- mozilla-thunderbird <removed> (high)
@@ -173708,7 +173712,8 @@
- iceweasel 2.0.0.1+dfsg-1 (high)
- xulrunner 1.8.0.9-1 (high)
- iceape 1.0.7-1 (high)
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- mozilla <removed> (high)
- mozilla-firefox <removed> (high)
- mozilla-thunderbird <removed> (unimportant)
@@ -173720,7 +173725,8 @@
- iceweasel 2.0.0.1+dfsg-1 (high)
- xulrunner 1.8.0.9-1 (high)
- iceape 1.0.7-1 (high)
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- mozilla <removed> (high)
- mozilla-firefox <removed> (high)
- mozilla-thunderbird <removed> (low)
@@ -173741,7 +173747,8 @@
- iceweasel 2.0.0.1+dfsg-1 (high)
- xulrunner 1.8.0.9-1 (high)
- iceape 1.0.7-1 (high)
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- mozilla <removed> (high)
- mozilla-firefox <removed> (high)
- mozilla-thunderbird <removed> (low)
@@ -173754,7 +173761,8 @@
- iceweasel 2.0.0.1+dfsg-1 (high)
- xulrunner 1.8.0.9-1 (high)
- iceape 1.0.7-1 (high)
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- mozilla <removed> (high)
- mozilla-firefox <removed> (high)
- mozilla-thunderbird <removed> (low)
@@ -173765,7 +173773,8 @@
- iceweasel 2.0.0.1+dfsg-1 (medium)
- xulrunner 1.8.0.9-1 (medium)
- iceape 1.0.7-1 (medium)
- - firefox <removed> (medium)
+ - firefox 45.0-1 (medium)
+ - firefox-esr 45.0esr-1 (medium)
- mozilla <removed> (medium)
- mozilla-firefox <removed> (medium)
- mozilla-thunderbird <removed> (low)
@@ -175395,14 +175404,16 @@
CVE-2006-5748 (Multiple unspecified vulnerabilities in the JavaScript engine in ...)
{DSA-1227-1 DSA-1225-1 DSA-1224-1}
NOTE: MFSA-2006-65
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- iceweasel 2.0+dfsg-1 (high)
- icedove 1.5.0.8-1 (medium)
- mozilla <removed> (high)
- xulrunner 1.8.0.8-1 (high)
CVE-2006-5747 (Unspecified vulnerability in Mozilla Firefox before 1.5.0.8, ...)
NOTE: MFSA-2006-65
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- iceweasel 2.0+dfsg-1 (high)
- icedove 1.5.0.8-1 (medium)
- mozilla <removed> (medium)
@@ -175644,7 +175655,8 @@
CVE-2006-5634 (Multiple PHP remote file inclusion vulnerabilities in phpProfiles 2.1 ...)
NOT-FOR-US: phpProfiles
CVE-2006-5633 (Firefox 1.5.0.7 and 2.0, and Seamonkey 1.1b, allows remote attackers ...)
- - firefox <removed> (unimportant)
+ - firefox 45.0-1 (unimportant)
+ - firefox-esr 45.0esr-1 (unimportant)
- iceweasel <unfixed> (unimportant)
- icedove <unfixed> (unimportant)
- mozilla <removed> (unimportant)
@@ -176015,7 +176027,8 @@
CVE-2006-5464 (Multiple unspecified vulnerabilities in the layout engine in Mozilla ...)
{DSA-1227-1 DSA-1225-1 DSA-1224-1}
NOTE: MFSA-2006-65
- - firefox <removed> (low)
+ - firefox 45.0-1 (low)
+ - firefox-esr 45.0esr-1 (low)
- iceweasel 2.0+dfsg-1 (low)
- icedove 1.5.0.8-1 (low)
- mozilla <removed> (low)
@@ -176023,7 +176036,8 @@
CVE-2006-5463 (Unspecified vulnerability in Mozilla Firefox before 1.5.0.8, ...)
{DSA-1227-1 DSA-1225-1 DSA-1224-1}
NOTE: MFSA-2006-67
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- iceweasel 2.0+dfsg-1 (high)
- icedove 1.5.0.8-1 (medium)
- mozilla <removed> (high)
@@ -176033,7 +176047,8 @@
NOTE: MFSA-2006-66
NOTE: this is the similar to CVE-2006-4339, see also CVE-2006-4340
NOTE: the fixes for CVE-2006-4340 were incomplete
- - firefox <removed> (high)
+ - firefox 45.0-1 (high)
+ - firefox-esr 45.0esr-1 (high)
- iceweasel 2.0+dfsg-1 (high)
- icedove 1.5.0.8-1 (medium)
- mozilla <removed> (high)
@@ -178613,7 +178628,8 @@
NOT-FOR-US: Sonium Enterprise Adressbook
CVE-2006-4310 (Mozilla Firefox 1.5.0.6 allows remote attackers to cause a denial of ...)
{DSA-1227-1 DSA-1225-1 DSA-1224-1}
- - firefox <removed>
+ - firefox 45.0-1
+ - firefox-esr 45.0esr-1
- iceweasel 2.0+dfsg-1
- mozilla <removed>
- mozilla-firefox <removed>
@@ -182299,7 +182315,8 @@
CVE-2006-2724 (Cross-site scripting (XSS) vulnerability in PunBB 1.2.11 allows remote ...)
NOT-FOR-US: PunBB
CVE-2006-2723 (Unspecified versions of Mozilla Firefox allow remote attackers to ...)
- - firefox <removed> (unimportant)
+ - firefox 45.0-1 (unimportant)
+ - firefox-esr 45.0esr-1 (unimportant)
- iceweasel <unfixed> (unimportant)
- mozilla <removed> (unimportant)
- mozilla-firefox <removed> (unimportant)
More information about the Secure-testing-commits
mailing list