Author: joeyh Date: 2010-02-05 21:14:37 +0000 (Fri, 05 Feb 2010) New Revision: 14045 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-02-05 19:28:47 UTC (rev 14044) +++ data/CVE/list 2010-02-05 21:14:37 UTC (rev 14045) @@ -1,3 +1,21 @@ +CVE-2010-0555 (Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not ...) + TODO: check +CVE-2010-0554 (The HTTP Authentication implementation in Geo++ GNCASTER 1.4.0.7 and ...) + TODO: check +CVE-2010-0553 (Geo++ GNCASTER 1.4.0.7 and earlier allows remote authenticated users ...) + TODO: check +CVE-2010-0552 (Geo++ GNCASTER 1.4.0.7 and earlier allows remote attackers to cause a ...) + TODO: check +CVE-2010-0551 (HTTP authentication implementation in Geo++ GNCASTER 1.4.0.7 and ...) + TODO: check +CVE-2010-0550 (admin.htm in Geo++ GNCASTER 1.4.0.7 and earlier does not properly ...) + TODO: check +CVE-2010-0549 (Unspecified vulnerability in the Network Controller in Xerox ...) + TODO: check +CVE-2010-0548 (Multiple unspecified vulnerabilities in the Network Controller and Web ...) + TODO: check +CVE-2010-0547 (client/mount.cifs.c in mount.cifs in smbfs in Samba 3.4.5 and earlier ...) + TODO: check CVE-2010-0546 RESERVED CVE-2010-0545 @@ -221,10 +239,9 @@ RESERVED CVE-2010-0444 RESERVED -CVE-2010-0443 - RESERVED -CVE-2010-0441 [asterisk T.38 remote crash] - RESERVED +CVE-2010-0443 (Unspecified vulnerability in Record Management Services (RMS) before ...) + TODO: check +CVE-2010-0441 (Asterisk Open Source 1.6.0.x before 1.6.0.22, 1.6.1.x before 1.6.1.14, ...) - asterisk <unfixed> [lenny] - asterisk <not-affected> (Only affects 1.6.x) [etch] - asterisk <not-affected> (Only affects 1.6.x) @@ -685,19 +702,16 @@ CVE-2010-0304 (Multiple buffer overflows in the LWRES dissector in Wireshark 0.9.15 ...) {DSA-1983-1} - wireshark 1.2.6-1 -CVE-2010-0303 [hybserv DoS via commands] - RESERVED +CVE-2010-0303 (mystring.c in hybserv in IRCD-Hybrid (aka Hybrid2 IRC Services) 1.9.2 ...) {DSA-1982-1} - hybserv 1.9.2-4.1 (low; bug #550389) CVE-2010-0302 RESERVED -CVE-2010-0301 [maildrop: privilege escalation] - RESERVED +CVE-2010-0301 (main.C in maildrop 2.3.0 and earlier, when run by root with the -d ...) {DSA-1981-1} - maildrop 2.2.0-3.1 (low; bug #564601) TODO: check courier (embeds maildrop) -CVE-2010-0300 [ircd-ratbox: NULL pointer vulnerability] - RESERVED +CVE-2010-0300 (cache.c in ircd-ratbox before 2.2.9 allows remote attackers to cause a ...) {DSA-1980-1} - ircd-ratbox 3.0.6.dfsg-1 (low; bug #567191) CVE-2010-0299 @@ -854,8 +868,8 @@ RESERVED CVE-2010-0256 RESERVED -CVE-2010-0255 - RESERVED +CVE-2010-0255 (Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, 7, and 8 does not ...) + TODO: check CVE-2010-0254 RESERVED CVE-2010-0253 @@ -2859,8 +2873,7 @@ NOT-FOR-US: Tftpd32 CVE-2005-4882 (tftpd in Philippe Jounin Tftpd32 2.74 and earlier, as used in Wyse ...) NOT-FOR-US: Tftpd32 -CVE-2009-4016 [ircd integer underflow] - RESERVED +CVE-2009-4016 (Integer underflow in the clean_string function in irc_string.c in (1) ...) {DSA-1980-1} - ircd-ratbox 3.0.6.dfsg-1 (medium; bug #567191) - ircd-hybrid <unfixed> (medium; bug #567192) @@ -7004,8 +7017,8 @@ RESERVED CVE-2009-2751 RESERVED -CVE-2009-2750 - RESERVED +CVE-2009-2750 (IBM WebSphere Service Registry and Repository (WSRR) 6.3.0 before FP2 ...) + TODO: check CVE-2009-2749 (Feature Pack for Communications Enabled Applications (CEA) before ...) NOT-FOR-US: IBM WebSphere Application Server CVE-2009-2748 @@ -76688,7 +76701,7 @@ CVE-2005-1174 (MIT Kerberos 5 (krb5) 1.3 through 1.4.1 Key Distribution Center (KDC) ...) {DSA-757-1} - krb5 1.3.6-4 (bug #318437; medium) -CVE-2004-1774 (Buffer overflow in the SDO_CODE_SIZE peocedure of the MD2 package ...) +CVE-2004-1774 (Buffer overflow in the SDO_CODE_SIZE procedure of the MD2 package ...) NOT-FOR-US: Oracle CVE-2005-1173 (Buffer overflow in PMSoftware Simple Web Server 1.0 allows remote ...) NOT-FOR-US: PMSoftware Simple Web Server