Author: jmm-guest Date: 2010-09-13 21:35:48 +0000 (Mon, 13 Sep 2010) New Revision: 15322 Modified: data/CVE/list Log: more changes to reflect change of xulrunner source package Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-09-13 21:27:44 UTC (rev 15321) +++ data/CVE/list 2010-09-13 21:35:48 UTC (rev 15322) @@ -322,6 +322,7 @@ - wireshark <not-affected> (Only affects Windows port) CVE-2010-3131 (Untrusted search path vulnerability in Mozilla Firefox before 3.5.12 ...) - xulrunner <not-affected> (Only affects Windows port) + - iceweasel <not-affected> (Only affects Windows port) CVE-2010-3123 RESERVED CVE-2010-3155 (Untrusted search path vulnerability in Adobe ExtendScript Toolkit ...) @@ -1373,6 +1374,7 @@ [lenny] - mapserver <no-dsa> (Minor issue) CVE-2010-2770 (Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird ...) - xulrunner <not-affected> (The vulnerability is MacOS-specific) + - iceweasel <not-affected> (The vulnerability is MacOS-specific) - iceape <not-affected> (The vulnerability is MacOS-specific) CVE-2010-2769 (Cross-site scripting (XSS) vulnerability in Mozilla Firefox before ...) {DSA-2106-1} @@ -1433,6 +1435,7 @@ [lenny] - iceape <not-affected> (Only a stub package) CVE-2010-2762 (The XPCSafeJSObjectWrapper class in the SafeJSObjectWrapper (aka SJOW) ...) - xulrunner <not-affected> (Only affects 3.6, only in experimental) + - iceweasel <not-affected> (Only affects 3.6, only in experimental) CVE-2010-2761 RESERVED CVE-2010-2760 (Use-after-free vulnerability in the nsTreeSelection function in ...) @@ -1453,27 +1456,36 @@ - bugzilla <unfixed> (bug #595015; low) CVE-2010-2755 (layout/generic/nsObjectFrame.cpp in Mozilla Firefox 3.6.7 does not ...) - xulrunner <not-affected> (Only exploitable in Firefox 3.6.x and above) + - iceweasel <not-affected> (Only exploitable in Firefox 3.6.x and above) CVE-2010-2754 (dom/base/nsJSEnvironment.cpp in Mozilla Firefox 3.5.x before 3.5.11 ...) {DSA-2075-1} - xulrunner 1.9.1.11-1 + - iceweasel 3.5.11-2 + [lenny] - iceweasel <not-affected> (Iceweasel in Lenny links against xulrunner) - icedove 3.0.6-1 - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) CVE-2010-2753 (Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x ...) {DSA-2075-1} - xulrunner 1.9.1.11-1 + - iceweasel 3.5.11-2 + [lenny] - iceweasel <not-affected> (Iceweasel in Lenny links against xulrunner) - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) - icedove 3.0.6-1 CVE-2010-2752 (Integer overflow in an array class in Mozilla Firefox 3.5.x before ...) - xulrunner 1.9.1.11-1 [lenny] - xulrunner <not-affected> (Only affects 1.9.1 and above) + - iceweasel 3.5.11-2 + [lenny] - iceweasel <not-affected> (Iceweasel in Lenny links against xulrunner) - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) - icedove 3.0.6-1 CVE-2010-2751 (The nsDocShell::OnRedirectStateChange function in ...) {DSA-2075-1} - xulrunner 1.9.1.11-1 + - iceweasel 3.5.11-2 + [lenny] - iceweasel <not-affected> (Iceweasel in Lenny links against xulrunner) - iceape 2.0.6-1 [lenny] - iceape <not-affected> (Only a stub package) CVE-2010-2750 @@ -5693,6 +5705,7 @@ NOT-FOR-US: notsoPureEdit CVE-2010-1215 (Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 ...) - xulrunner <not-affected> (Only affects Firefox 3.6.x and above) + - iceweasel <not-affected> (Only affects Firefox 3.6.x and above) CVE-2010-1214 (Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x ...) {DSA-2075-1} - xulrunner 1.9.1.11-1