Author: joeyh Date: 2009-04-17 09:14:16 +0000 (Fri, 17 Apr 2009) New Revision: 11640 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-04-17 07:13:26 UTC (rev 11639) +++ data/CVE/list 2009-04-17 09:14:16 UTC (rev 11640) @@ -1036,6 +1036,7 @@ [etch] - linux-2.6 <not-affected> (Issue was introduced after 2.6.24 release) - linux-2.6.24 <not-affected> (Issue was introduced after 2.6.24 release) CVE-2009-0934 (Cross-site scripting (XSS) vulnerability in ejabberd before 2.0.4 ...) + {DSA-1774-1} - ejabberd 2.0.5-1 (bug #520852) [etch] - ejabberd <not-affected> (Vulnerable expression not present) CVE-2009-1071 (Stack-based buffer overflow in Icarus 2.0 allows remote attackers to ...) @@ -4316,6 +4317,7 @@ CVE-2009-0197 (Integer overflow in the FORMATS Plugin before 4.23 for IrfanView ...) NOT-FOR-US: IrfanView CVE-2009-0196 + RESERVED - ghostscript <unfixed> CVE-2009-0195 RESERVED @@ -4411,6 +4413,7 @@ - cups <unfixed> (low) CVE-2009-0163 [integer overflow in cups imagetops filter] RESERVED + {DSA-1773-1} - cups <unfixed> CVE-2009-0162 RESERVED @@ -29276,6 +29279,7 @@ CVE-2007-2842 RESERVED CVE-2007-2841 [lighttpd DoS] + RESERVED - lighttpd 1.4.16-1 (bug #428368) NOTE: Duplicate of CVE-2007-3947, was assigned from Debian CNA and clashed with MITRE NOTE: assignment @@ -42632,6 +42636,7 @@ {DSA-1177-1} - usermin <removed> (bug #374609) CVE-2006-4245 + RESERVED - archivemail <unfixed> CVE-2006-4244 (SQL-Ledger 2.4.4 through 2.6.17 authenticates users by verifying that ...) {DSA-1239-1} @@ -45271,6 +45276,7 @@ {DSA-1112} - mysql-dfsg-5.0 5.0.19-1 (bug #373913; high) CVE-2006-3100 [termnetd buffer overflow] + RESERVED - termpkg 3.3-7 (bug #358028; medium) CVE-2006-3085 (xt_sctp in netfilter for Linux kernel before 2.6.17.1 allows attackers ...) - linux-2.6 2.6.16-15