Author: joeyh Date: 2009-11-21 09:14:22 +0000 (Sat, 21 Nov 2009) New Revision: 13338 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-11-21 06:27:49 UTC (rev 13337) +++ data/CVE/list 2009-11-21 09:14:22 UTC (rev 13338) @@ -182,7 +182,7 @@ CVE-2009-3939 (The poll_mode_io file for the megaraid_sas driver in the Linux kernel ...) - linux-2.6 <unfixed> (low) - linux-2.6.24 <removed> (low) -CVE-2009-4004 [kernel memory corruption in kvm_vcpu_ioctl_x86_setup_mce] +CVE-2009-4004 (Buffer overflow in the kvm_vcpu_ioctl_x86_setup_mce function in ...) - linux-2.6 <unfixed> [etch] - linux-2.6 <not-affected> (kvm introduced in 2.6.25) - linux-2.6.24 <not-affected> (kvm introduced in 2.6.25) @@ -1478,7 +1478,7 @@ - libfwbuilder <unfixed> (low) [lenny] - libfwbuilder <not-affected> (Introduced in 3.0.4) [etch] - libfwbuilder <not-affected> (Introduced in 3.0.4) -CVE-2009-3892 [RT: XSS security problem in custom field display] +CVE-2009-3892 (Cross-site scripting (XSS) vulnerability in Best Practical Solutions ...) - request-tracker3.8 3.8.5-1 (bug #546829) - request-tracker3.6 3.6.9-1 (bug #546778) [etch] - request-tracker3.6 <not-affected> (vulnerable code not present) @@ -1783,6 +1783,7 @@ RESERVED CVE-2009-3303 [gforge: XSS issue via helpname parameter] RESERVED + {DSA-1937-1} - gforge 4.8.1-3 (low) CVE-2009-3302 RESERVED