joeyh at alioth.debian.org
2008-Oct-17 09:14 UTC
[Secure-testing-commits] r10105 - data/CVE
Author: joeyh Date: 2008-10-17 09:14:11 +0000 (Fri, 17 Oct 2008) New Revision: 10105 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-10-17 00:27:22 UTC (rev 10104) +++ data/CVE/list 2008-10-17 09:14:11 UTC (rev 10105) @@ -284,6 +284,7 @@ CVE-2008-4446 (Cross-site scripting (XSS) vulnerability in Nucleus EUC-JP 3.31 SP1 ...) NOT-FOR-US: Nucleus EUC-JP CVE-2008-4445 (The sctp_auth_ep_set_hmacs function in net/sctp/auth.c in the Stream ...) + {DSA-1655-1} - linux-2.6 2.6.26-5 - linux-2.6.24 <unfixed> [etch] - linux-2.6 <not-affected> (vulnerable code not present) @@ -1090,6 +1091,7 @@ CVE-2008-4114 (srv.sys in Microsoft Windows Vista SP1 allows remote attackers to ...) NOT-FOR-US: Microsoft Windows CVE-2008-4113 (The sctp_getsockopt_hmac_ident function in net/sctp/socket.c in the ...) + {DSA-1655-1} - linux-2.6 2.6.26-5 [etch] - linux-2.6 <not-affected> (Vulnerable code not present) - linux-2.6.24 <unfixed> @@ -1800,6 +1802,7 @@ - linux-2.6.24 <not-affected> (Fedora-specific patch) CVE-2008-3831 RESERVED + {DSA-1655-1} CVE-2008-3830 (Condor before 7.0.5 does not properly handle when the configuration ...) - condor <itp> (bug #233482) CVE-2008-3829 (Unspecified vulnerability in the condor_ schedd daemon in Condor ...) @@ -2624,7 +2627,7 @@ - linux-2.6.24 2.6.24-6~etchnhalf.5 [etch] - linux-2.6 <not-affected> CVE-2008-3525 (The sbni_ioctl function in drivers/net/wan/sbni.c in the wan subsystem ...) - {DSA-1653-1} + {DSA-1655-1 DSA-1653-1} - linux-2.6 2.6.26-7 - linux-2.6.24 <unfixed> CVE-2008-3524 (rc.sysinit in initscripts before 8.76.3-1 in Fedora 9 allows local ...) @@ -7265,7 +7268,7 @@ [sarge] - otrs <not-affected> (Vulnerable code not present) NOTE: http://packages.qa.debian.org/o/otrs2/news/20080320T211729Z.html CVE-2008-1514 (arch/s390/kernel/ptrace.c in Linux kernel 2.6.9, and other versions ...) - {DSA-1653-1} + {DSA-1655-1 DSA-1653-1} - linux-2.6 2.6.26-8 NOTE: s390 specific issue, counterpart for x86 not reproducible with 2.6.24 here CVE-2008-1513 (SQL injection vulnerability in index.php in Danneo CMS 0.5.1 and ...)