Author: gilbert-guest Date: 2009-04-26 21:03:10 +0000 (Sun, 26 Apr 2009) New Revision: 11721 Modified: data/CVE/list data/DSA/list Log: moving clamav upack vuln to DSA now that it has a CVE number. bug was filed for php issue, so note no longer needed. Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-04-26 17:15:22 UTC (rev 11720) +++ data/CVE/list 2009-04-26 21:03:10 UTC (rev 11721) @@ -342,8 +342,6 @@ NOT-FOR-US: AJ Square AJ Article CVE-2009-1371 (The CLI_ISCONTAINED macro in libclamav/others.h in ClamAV before ...) - clamav 0.95.1+dfsg-1 - [etch] - clamav 0.90.1dfsg-4-etch19 - [lenny] - clamav 0.94.dfsg.2-1lenny2 NOTE: https://wwws.clamav.net/bugzilla/show_bug.cgi?id=1552 CVE-2009-1372 (Stack-based buffer overflow in the cli_url_canon function in ...) - clamav 0.95.1+dfsg-1 @@ -2308,7 +2306,6 @@ CVE-2009-0754 (PHP 4.4.4, 5.1.6, and other versions, when running on Apache, allows ...) - php4 <removed> (low) - php5 5.2.9.dfsg.1-1 (low; bug #523049) - TODO: File bug CVE-2008-6398 (sng_regress in SNG 1.0.2 allows local users to overwrite arbitrary ...) - sng 1.0.2-6 (bug #496407; unimportant) CVE-2008-6397 (rlatex in AlcoveBook sgml2x 1.0.0 allows local users to overwrite ...) Modified: data/DSA/list ==================================================================--- data/DSA/list 2009-04-26 17:15:22 UTC (rev 11720) +++ data/DSA/list 2009-04-26 21:03:10 UTC (rev 11721) @@ -25,7 +25,7 @@ [etch] - udev 0.105-4etch1 [lenny] - udev 0.125-7+lenny1 [15 Apr 2009] DSA-1771-1 clamav - several vulnerabilities - {CVE-2008-6680 CVE-2009-1270} + {CVE-2008-6680 CVE-2009-1270 CVE-2009-1371} [etch] - clamav 0.90.1dfsg-4etch19 [lenny] - clamav 0.94.dfsg.2-1lenny2 [13 Apr 2009] DSA-1770-1 imp4 - cross-site scripting