dannf at alioth.debian.org
2008-Dec-11 18:27 UTC
[Secure-testing-commits] r10677 - data/CVE
Author: dannf Date: 2008-12-11 18:27:22 +0000 (Thu, 11 Dec 2008) New Revision: 10677 Modified: data/CVE/list Log: kernel updates Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-12-11 18:13:45 UTC (rev 10676) +++ data/CVE/list 2008-12-11 18:27:22 UTC (rev 10677) @@ -260,6 +260,7 @@ CVE-2008-5300 (Linux kernel 2.6.28 allows local users to cause a denial of service ...) {DSA-1681-1} - linux-2.6 2.6.26-12 + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-5296 (Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when ...) - gallery 1.5.9-1.2 (low; bug #506824) [etch] - gallery <not-affected> (vulnerable code introduced in 1.5.8-svn-b34) @@ -515,6 +516,7 @@ CVE-2008-5182 (The inotify functionality in Linux kernel 2.6 before 2.6.28-rc5 might ...) {DSA-1681-1} - linux-2.6 <unfixed> + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-5181 (Microsoft Communicator allows remote attackers to cause a denial of ...) NOT-FOR-US: Microsoft Communicator CVE-2008-5180 (Microsoft Communicator allows remote attackers to cause a denial of ...) @@ -650,6 +652,7 @@ CVE-2008-5134 (Buffer overflow in the lbs_process_bss function in ...) {DSA-1681-1} - linux-2.6 <unfixed> + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-5133 (ipnat in IP Filter in Sun Solaris 10 and OpenSolaris before snv_96, ...) NOT-FOR-US: ipnat CVE-2008-5183 (cupsd in CUPS 1.3.9 and earlier allows local users, and possibly ...) @@ -965,11 +968,11 @@ CVE-2008-5025 (Stack-based buffer overflow in the hfs_cat_find_brec function in ...) {DSA-1681-1} - linux-2.6 2.6.26-11 - - linux-2.6.24 <unfixed> + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-5029 (The __scm_destroy function in net/core/scm.c in the Linux kernel ...) {DSA-1681-1} - linux-2.6 2.6.26-11 - - linux-2.6.24 <unfixed> + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-XXXX [Trac Multiple Vulnerabilities] - trac 0.11.1-2.1 (bug #505197) CVE-2008-5008 (Buffer overflow in src/src_sinc.c in Secret Rabbit Code (aka SRC or ...) @@ -1033,11 +1036,11 @@ CVE-2008-4934 (The hfsplus_block_allocate function in fs/hfsplus/bitmap.c in the ...) {DSA-1681-1} - linux-2.6 2.6.26-11 - - linux-2.6.24 <unfixed> + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-4933 (Buffer overflow in the hfsplus_find_cat function in ...) {DSA-1681-1} - linux-2.6 2.6.26-11 - - linux-2.6.24 <unfixed> + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-4932 (webmail/modules/filesystem/edit.php in U-Mail Webmail server 4.91 ...) NOT-FOR-US: U-Mail Webmail server CVE-2008-XXXX [universalindentgui insecure usage of temp files] @@ -1805,7 +1808,8 @@ CVE-2008-4618 (The Stream Control Transmission Protocol (sctp) implementation in the ...) {DSA-1681-1} - linux-2.6 2.6.26-10 - - linux-2.6.24 <unfixed> + [etch] - linux-2.6 <not-affected> + - linux-2.6.24 2.6.24-6~etchnhalf.7 NOTE: ba0166708ef4da7eeb61dd92bbba4d5a749d6561 CVE-2008-4617 (SQL injection vulnerability in the actualite module 1.0 for Joomla! ...) NOT-FOR-US: actualite module for Joomla! @@ -1916,7 +1920,7 @@ CVE-2008-4576 (sctp in Linux kernel before 2.6.25.18 allows remote attackers to cause ...) {DSA-1681-1} - linux-2.6 2.6.26-9 - - linux-2.6.24 <unfixed> + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-4575 (Buffer overflow in the DoCommand function in jhead before 2.84 might ...) - jhead 2.84-1 (bug #502353; low) CVE-2008-4571 (Cross-site scripting (XSS) vulnerability in the LiveSearch module in ...) @@ -1963,7 +1967,7 @@ CVE-2008-4554 (The do_splice_from function in fs/splice.c in the Linux kernel before ...) {DSA-1681-1} - linux-2.6 2.6.26-9 - - linux-2.6.24 <unfixed> + - linux-2.6.24 2.6.24-6~etchnhalf.7 CVE-2008-4553 (qemu-make-debian-root in qemu 0.9.1-5 on Debian GNU/Linux allows local ...) {DSA-1657-1} - qemu 0.9.1-6 (low; bug #496394) @@ -4550,7 +4554,7 @@ CVE-2008-3528 (The error-reporting functionality in (1) fs/ext2/dir.c, (2) ...) {DSA-1681-1} - linux-2.6 2.6.26-11 (unimportant) - - linux-2.6.24 <unfixed> (unimportant) + - linux-2.6.24 2.6.24-6~etchnhalf.7 (unimportant) NOTE: cdbf6dba28e8e6268c8420857696309470009fd9 (ext3) NOTE: bd39597cbd42a784105a04010100e27267481c67 (ext2) NOTE: 9d9f177572d9e4eba0f2e18523b44f90dd51fe74 (ext4)