[Git][security-tracker-team/security-tracker][master] Correct entry for historic DSA-1237-1

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sun Aug 3 18:03:41 BST 2025



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e8ab262c by Salvatore Bonaccorso at 2025-08-03T19:03:24+02:00
Correct entry for historic DSA-1237-1

Wile fixing the suffix, as the advisory went out with the -1 suffix,
adjust as well the associationg to the source-package which was wrong.
The update did fix src:kernel-source-2.4.27 with the version
2.4.27-10sarge5.

Links: https://salsa.debian.org/security-tracker-team/security-tracker/-/merge_requests/224

- - - - -


2 changed files:

- data/CVE/list
- data/DSA/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -827965,7 +827965,7 @@ CVE-2006-5872 (login.pl in SQL-Ledger before 2.6.21 and LedgerSMB before 1.1.5 a
 	{DSA-1239-1}
 	- sql-ledger 2.6.21-1
 CVE-2006-5871 (smbfs in Linux kernel 2.6.8 and other versions, and 2.4.x before 2.4.3 ...)
-	{DSA-1237 DSA-1233}
+	{DSA-1237-1 DSA-1233}
 	- linux-2.6 <not-affected> (Current Linux versions already implement intended behaviour)
 CVE-2006-5870 (Multiple integer overflows in OpenOffice.org (OOo) 2.0.4 and earlier,  ...)
 	{DSA-1246-1}
@@ -828460,7 +828460,7 @@ CVE-2006-5651 (list.php in DigiOz Guestbook before 1.7.1 allows remote attackers
 CVE-2006-5650 (The ICQPhone.SipxPhoneManager ActiveX control in America Online ICQ 5. ...)
 	NOT-FOR-US: ICQPhone.SipxPhoneManager
 CVE-2006-5649 (Unspecified vulnerability in the "alignment check exception handling"  ...)
-	{DSA-1237 DSA-1233}
+	{DSA-1237-1 DSA-1233}
 	- linux-2.6 2.6.18-4
 CVE-2006-5648 (Ubuntu Linux 6.10 for the PowerPC (PPC) allows local users to cause a  ...)
 	- linux-2.6 2.6.18-1 (low)
@@ -829508,7 +829508,7 @@ CVE-2006-5176 (Buffer overflow in NTLM authentication in MailEnable Professional
 CVE-2006-5175 (Cross-site request forgery (CSRF) vulnerability in the administrative  ...)
 	NOT-FOR-US: TeraStation HD-HTGL
 CVE-2006-5174 (The copy_from_user function in the uaccess code in Linux kernel 2.6 be ...)
-	{DSA-1237 DSA-1233}
+	{DSA-1237-1 DSA-1233}
 	- linux-2.6 2.6.18-5
 	NOTE: s390 only, fix in 2.6.18-3 was reverted in 2.6.18-4
 CVE-2006-5173 (Linux kernel does not properly save or restore EFLAGS during a context ...)
@@ -829888,7 +829888,7 @@ CVE-2006-4999
 CVE-2006-4998
 	RESERVED
 CVE-2006-4997 (The clip_mkip function in net/atm/clip.c of the ATM subsystem in Linux ...)
-	{DSA-1237 DSA-1233}
+	{DSA-1237-1 DSA-1233}
 	- linux-2.6 2.6.18-1
 CVE-2006-4996 (Unspecified vulnerability in JoomlaLib (com_joomlalib) before 1.2.2 fo ...)
 	NOT-FOR-US: JoomlaLib (com_joomlalib) for Joomla!
@@ -830928,7 +830928,7 @@ CVE-2006-4540 (Cross-site scripting (XSS) vulnerability in learncenter.asp in Le
 CVE-2006-4539 ((1) includes/widgets/module_company_tickets.php and (2) includes/widge ...)
 	NOT-FOR-US: Cerberus Helpdesk
 CVE-2006-4538 (Linux kernel 2.6.17 and earlier, when running on IA64 or SPARC platfor ...)
-	{DSA-1237 DSA-1233}
+	{DSA-1237-1 DSA-1233}
 	- linux-2.6 2.6.17-9
 CVE-2006-4537 (NET$SESSION_CONTROL.EXE in DECnet-Plus in OpenVMS ALPHA 7.3-2 and Alph ...)
 	NOT-FOR-US: OpenVMS
@@ -831971,7 +831971,7 @@ CVE-2006-4095 (BIND before 9.2.6-P1 and 9.3.x before 9.3.2-P1 allows remote atta
 CVE-2006-4094
 	RESERVED
 CVE-2006-4093 (Linux kernel 2.x.6 before 2.6.17.9 and 2.4.x before 2.4.33.1 on PowerP ...)
-	{DSA-1184-2 DSA-1237}
+	{DSA-1184-2 DSA-1237-1}
 	- linux-2.6 2.6.17-7
 CVE-2006-4092 (Simpliciti Locked Browser does not properly limit a user's actions to  ...)
 	NOT-FOR-US: Simpliciti Locked Browser


=====================================
data/DSA/list
=====================================
@@ -16124,9 +16124,9 @@
 [17 Dec 2006] DSA-1238-1 clamav
 	{CVE-2006-6406 CVE-2006-6481}
 	[sarge] - clamav 0.84-2.sarge.13
-[17 Dec 2006] DSA-1237 kernel-source-2.4.27 - several
+[17 Dec 2006] DSA-1237-1 kernel-source-2.4.27 - several
         {CVE-2006-4093 CVE-2006-4538 CVE-2006-4997 CVE-2006-5174 CVE-2006-5649 CVE-2006-5871}
-        [sarge] - kernel-source-2.6.8 2.6.8-16sarge6
+        [sarge] - kernel-source-2.4.27 2.4.27-10sarge5
 [13 Dec 2006] DSA-1236-1 enemies-of-carlotta
 	{CVE-2006-5875}
 	[sarge] - enemies-of-carlotta 1.0.3-1sarge1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e8ab262c25f1663de4e0b4cadb3ee2308069045c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e8ab262c25f1663de4e0b4cadb3ee2308069045c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250803/d05798f1/attachment.htm>


More information about the debian-security-tracker-commits mailing list