Author: joeyh Date: 2010-08-20 09:16:17 +0000 (Fri, 20 Aug 2010) New Revision: 15175 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-08-20 03:59:32 UTC (rev 15174) +++ data/CVE/list 2010-08-20 09:16:17 UTC (rev 15175) @@ -164,6 +164,7 @@ NOTE: https://bugs.launchpad.net/ubuntu/+source/lynx-cur/+bug/613254 CVE-2010-3015 [ext4 integer overflow] RESERVED + {DSA-2094-1} - linux-2.6 <unfixed> CVE-2010-2995 (The SigComp Universal Decompressor Virtual Machine (UDVM) in Wireshark ...) - wireshark 1.2.10-1 @@ -204,6 +205,7 @@ RESERVED CVE-2010-2959 [nframes issue] RESERVED + {DSA-2094-1} - linux-2.6 <unfixed> CVE-2010-2958 RESERVED @@ -592,6 +594,7 @@ RESERVED CVE-2010-2803 RESERVED + {DSA-2094-1} CVE-2010-2802 RESERVED CVE-2010-2801 (Integer signedness error in the Quantum decompressor in cabextract ...) @@ -605,6 +608,7 @@ - socat 1.7.1.3-1 (bug #591443; medium) CVE-2010-2798 [gfs2 null ptr dereference] RESERVED + {DSA-2094-1} - linux-2.6 2.6.32-20 CVE-2010-2797 RESERVED @@ -1316,6 +1320,7 @@ NOT-FOR-US: UMIP CVE-2010-2521 RESERVED + {DSA-2094-1} CVE-2010-2520 [freetype] RESERVED {DSA-2070-1} @@ -1941,6 +1946,7 @@ - nginx <not-affected> (Confirmed Windows only, see bug #590768) CVE-2009-4895 [linux tty null ptr dereference] RESERVED + {DSA-2094-1} - linux-2.6 2.6.32-9 CVE-2009-4894 (Multiple cross-site scripting (XSS) vulnerabilities in profile.php in ...) NOT-FOR-US: PunBB @@ -2025,6 +2031,7 @@ NOTE: tuxonice-userui 1.0-1 was binNMUed CVE-2010-2248 [os/2 smb issue] RESERVED + {DSA-2094-1} - linux-2.6 2.6.32-12 (low) CVE-2010-2247 [makepasswd: insecure passwords generated with default settings] RESERVED @@ -2050,6 +2057,7 @@ TODO: check CVE-2010-2240 [mm: keep a guard page below a grow-down stack segment] RESERVED + {DSA-2094-1} - linux-2.6 2.6.32-21 CVE-2010-2239 [libvirt not setting user defined backing store format] RESERVED @@ -2088,6 +2096,7 @@ [lenny] - tomcat6 <not-affected> (Only ships the servlet package) CVE-2010-2226 [xfs SWAPEXT ioctl permissions bypass] RESERVED + {DSA-2094-1} - linux-2.6 2.6.32-19 CVE-2010-2225 (Use-after-free vulnerability in the SplObjectStorage unserializer in ...) {DSA-2089-1}