Author: jmm-guest Date: 2010-08-06 17:27:21 +0000 (Fri, 06 Aug 2010) New Revision: 15140 Modified: data/CVE/list Log: new icedove issues libvirt fixed Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-08-06 14:11:29 UTC (rev 15139) +++ data/CVE/list 2010-08-06 17:27:21 UTC (rev 15140) @@ -568,6 +568,7 @@ CVE-2010-2754 (dom/base/nsJSEnvironment.cpp in Mozilla Firefox 3.5.x before 3.5.11 ...) {DSA-2075-1} - xulrunner 1.9.1.11-1 + - icedove 3.0.6-1 - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) CVE-2010-2753 (Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x ...) @@ -575,11 +576,13 @@ - xulrunner 1.9.1.11-1 - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) + - icedove 3.0.6-1 CVE-2010-2752 (Integer overflow in an array class in Mozilla Firefox 3.5.x before ...) - xulrunner 1.9.1.11-1 [lenny] - xulrunner <not-affected> (Only affects 1.9.1 and above) - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) + - icedove 3.0.6-1 CVE-2010-2751 (The nsDocShell::OnRedirectStateChange function in ...) {DSA-2075-1} - xulrunner 1.9.1.11-1 @@ -1854,7 +1857,7 @@ - linux-2.6 2.6.32-11 CVE-2010-2242 [libvirt privilege scalation because of improperly mapped source privileged ports] RESERVED - - libvirt <unfixed> (low) + - libvirt 0.8.3-1 (low) [lenny] - libvirt <no-dsa> (Minor issue) CVE-2010-2241 RESERVED @@ -1862,15 +1865,15 @@ RESERVED CVE-2010-2239 [libvirt not setting user defined backing store format] RESERVED - - libvirt <unfixed> (low) + - libvirt 0.8.3-1 (low) [lenny] - libvirt <not-affected> (only affects >= 0.6.0) CVE-2010-2238 [libvirt: ignoring defined disk backing store format when recursing into disk image backing stores] RESERVED - - libvirt <unfixed> + - libvirt 0.8.3-1 [lenny] - libvirt <not-affected> (only affects >= 0.7.2) CVE-2010-2237 [libvirt: ignoring defined main disk format when looking up disk backing stores] RESERVED - - libvirt <unfixed> + - libvirt 0.8.3-1 [lenny] - libvirt <not-affected> (only affects >= 0.6.1) CVE-2010-2236 RESERVED @@ -4761,12 +4764,15 @@ [lenny] - xulrunner <not-affected> (Only affects 1.9.1 and above) - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) + - icedove 3.0.6-1 CVE-2010-1212 (js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6.x ...) - xulrunner <not-affected> (Only affects Firefox 3.6.x and above) + - icedove 3.0.6-1 CVE-2010-1211 (Multiple unspecified vulnerabilities in the browser engine in Mozilla ...) {DSA-2075-1} - xulrunner 1.9.1.11-1 - iceape 2.0.6-1 + - icedove 3.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) CVE-2010-1210 (intl/uconv/util/nsUnicodeDecodeHelper.cpp in Mozilla Firefox before ...) TODO: check @@ -4789,6 +4795,7 @@ CVE-2010-1205 (Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before ...) {DSA-2075-1 DSA-2072-1} - libpng 1.2.44-1 (bug #587670) + - icedove 3.0.6-1 - tuxonice-userui 1.0-1 (unimportant) NOTE: tuxonice-userui 1.0-1 was binNMUed CVE-2010-1204 (Search.pm in Bugzilla 2.17.1 through 3.2.6, 3.3.1 through 3.4.6, 3.5.1 ...) @@ -6448,6 +6455,7 @@ CVE-2010-0654 (Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, ...) {DSA-2075-1} - xulrunner 1.9.1.11-1 (bug #570743) + - icedove 3.0.6-1 - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) CVE-2010-0653 (Opera permits cross-origin loading of CSS stylesheets even when the ...)