Author: nion Date: 2009-05-15 20:36:53 +0000 (Fri, 15 May 2009) New Revision: 11905 Modified: data/CVE/list Log: incomplete eggdrop fix rather covered by a new cve id Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-05-15 19:29:25 UTC (rev 11904) +++ data/CVE/list 2009-05-15 20:36:53 UTC (rev 11905) @@ -1,3 +1,6 @@ +CVE-2009-XXXX [eggdrop buffer overflow] + - eggdrop <unfixed> (medium; bug #528778) + NOTE: CVE id request on oss-sec CVE-2009-XXXX [cron: Incomplete fix for CVE-2006-2607 (setgid() and initgroups() not checked] - cron 3.0pl1-106 (medium; bug #528434) CVE-2009-1628 @@ -30507,7 +30510,7 @@ - gnatsweb 4.00-1.1 (low; bug #427156) CVE-2007-2807 (Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop ...) {DSA-1448-1} - - eggdrop 1.6.19-1.2 (medium; bug #427157; bug #528778) + - eggdrop 1.6.18-1.1 (medium; bug #427157) CVE-2007-2806 (Multiple cross-site scripting (XSS) vulnerabilities in index.php in ...) NOT-FOR-US: GaliX CVE-2007-2805 (Multiple cross-site scripting (XSS) vulnerabilities in index.php in ...)