nion at alioth.debian.org
2008-Dec-30 14:49 UTC
[Secure-testing-commits] r10826 - in data: CVE DTSA
Author: nion Date: 2008-12-30 14:49:43 +0000 (Tue, 30 Dec 2008) New Revision: 10826 Modified: data/CVE/list data/DTSA/list Log: new audiofile issue Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-12-30 11:02:51 UTC (rev 10825) +++ data/CVE/list 2008-12-30 14:49:43 UTC (rev 10826) @@ -1,3 +1,6 @@ +CVE-2009-XXXX [buffer overflow in libaudiofile] + - audiofile <unfixed> (medium; bug #510205) + TODO: request CVE id CVE-2008-5744 (Array index error in the dahdi/tor2.c driver in Zaptel (aka DAHDI) ...) TODO: check CVE-2008-5743 (pdfjam creates the (1) pdf90, (2) pdfjoin, and (3) pdfnup files with a ...) Modified: data/DTSA/list ==================================================================--- data/DTSA/list 2008-12-30 11:02:51 UTC (rev 10825) +++ data/DTSA/list 2008-12-30 14:49:43 UTC (rev 10826) @@ -538,3 +538,7 @@ [December 22nd, 2008] DTSA-181-1 mplayer - arbitrary code execution {CVE-2008-5616 CVE-2008-4610} [lenny] - mplayer 1.0~rc2-17+lenny2 +[December 29th, 2008] DTSA-174-2 uw-imap - serveral vulnerabilities + {CVE-2008-5006 CVE-2008-5005 CVE-2008-5514} + [lenny] - uw-imap 2007b~dfsg-4+lenny2 + NOTE: regression fix for DTSA-174-1 + additional patch