Author: joeyh Date: 2011-07-08 09:14:21 +0000 (Fri, 08 Jul 2011) New Revision: 16915 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2011-07-08 08:20:18 UTC (rev 16914) +++ data/CVE/list 2011-07-08 09:14:21 UTC (rev 16915) @@ -662,7 +662,7 @@ - iceape <not-affected> (Was already fixed as CVE-2010-1201 for Firefox < 3.6) - icedove 3.1.11-1 CVE-2011-2376 (Multiple unspecified vulnerabilities in the browser engine in Mozilla ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - xulrunner <removed> [lenny] - xulrunner 1.9.0.19-12 - iceweasel 3.5.19-3 @@ -674,7 +674,7 @@ - xulrunner <not-affected> (Only affects Firefox 5.0, not yet in unstable) - iceweasel <not-affected> (Only affects Firefox 5.0, not yet in unstable) CVE-2011-2374 (Multiple unspecified vulnerabilities in the browser engine in Mozilla ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - xulrunner <removed> [lenny] - xulrunner 1.9.0.19-12 - iceweasel 3.5.19-3 @@ -683,7 +683,7 @@ [lenny] - iceape <not-affected> (Only a stub package) - icedove 3.1.11-1 CVE-2011-2373 (Use-after-free vulnerability in Mozilla Firefox before 3.6.18 and 4.x ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - xulrunner <removed> - iceweasel 3.5.19-3 [lenny] - xulrunner 1.9.0.19-12 @@ -694,7 +694,7 @@ CVE-2011-2372 RESERVED CVE-2011-2371 (Integer overflow in the Array.reduceRight method in Mozilla Firefox ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - xulrunner <removed> - iceweasel 3.5.19-3 [lenny] - xulrunner 1.9.0.19-12 @@ -722,7 +722,7 @@ - xulrunner <not-affected> (Only affects Firefox >= 4.0, not yet in unstable) - iceweasel <not-affected> (Only affects Firefox >= 4.0, not yet in unstable) CVE-2011-2365 (Unspecified vulnerability in the browser engine in Mozilla Firefox ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - xulrunner <not-affected> (Vulnerable code not present) - iceweasel 3.5.19-3 [lenny] - xulrunner 1.9.0.19-12 @@ -736,7 +736,7 @@ - iceape <not-affected> (Only affects Firefox >= 3.6) - icedove 3.1.11-1 CVE-2011-2363 (Use-after-free vulnerability in the nsSVGPointList::AppendElement ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - iceweasel 3.5.19-3 - xulrunner <removed> [lenny] - xulrunner 1.9.0.19-12 @@ -745,7 +745,7 @@ [lenny] - iceape <not-affected> (Only a stub package) - icedove <unfixed> CVE-2011-2362 (Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - iceweasel 3.5.19-3 - xulrunner <removed> [lenny] - xulrunner 1.9.0.19-12 @@ -1235,9 +1235,11 @@ CVE-2011-2214 (Unspecified vulnerability in the Open Database Connectivity (ODBC) ...) NOT-FOR-US: 7T Interactive Graphical SCADA System CVE-2011-2175 (Integer underflow in the visual_read function in wiretap/visual.c in ...) + {DSA-2274-1} - wireshark 1.6.0-1 (unimportant; bug #630159) NOTE: Crashes w/o code injection not treated as security issues, see README.Security CVE-2011-2174 (Double free vulnerability in the tvb_uncompress function in ...) + {DSA-2274-1} - wireshark 1.6.0-1 (bug #630159) CVE-2011-2173 (The implementation of OutputMediator objects in IBM WebSphere Portal ...) NOT-FOR-US: IBM WebSphere Portal @@ -1751,12 +1753,15 @@ CVE-2011-1960 RESERVED CVE-2011-1959 (The snoop_read function in wiretap/snoop.c in Wireshark 1.2.x before ...) + {DSA-2274-1} - wireshark 1.6.0-1 (unimportant; bug #630159) NOTE: Crashes w/o code injection not treated as security issues, see README.Security CVE-2011-1958 (Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows ...) + {DSA-2274-1} - wireshark <unfixed> (unimportant) NOTE: Crashes w/o code injection not treated as security issues, see README.Security CVE-2011-1957 (The dissect_dcm_main function in epan/dissectors/packet-dcm.c in the ...) + {DSA-2274-1} - wireshark <unfixed> (unimportant) NOTE: Crashes w/o code injection not treated as security issues, see README.Security CVE-2011-1956 (The bytes_repr_len function in Wireshark 1.4.5 uses an incorrect ...) @@ -2784,6 +2789,7 @@ [squeeze] - wireshark <not-affected> (Only affects 1.4.x) [lenny] - wireshark <not-affected> (Only affects 1.4.x) CVE-2011-1590 (The X.509if dissector in Wireshark 1.2.x before 1.2.16 and 1.4.x ...) + {DSA-2274-1} - wireshark 1.4.5-1 (unimportant) CVE-2011-1589 (Directory traversal vulnerability in Path.pm in Mojolicious before ...) {DSA-2221-1} @@ -7357,7 +7363,7 @@ CVE-2011-0086 (win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and ...) NOT-FOR-US: Microsoft Windows CVE-2011-0085 (Use-after-free vulnerability in the nsXULCommandDispatcher function in ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - iceweasel 3.5.19-3 - xulrunner <removed> [lenny] - xulrunner 1.9.0.19-12 @@ -7368,7 +7374,7 @@ CVE-2011-0084 RESERVED CVE-2011-0083 (Use-after-free vulnerability in the nsSVGPathSegList::ReplaceItem ...) - {DSA-2269-1 DSA-2268-1} + {DSA-2273-3 DSA-2269-1 DSA-2268-1} - iceweasel 3.5.19-3 - xulrunner <removed> [lenny] - xulrunner 1.9.0.19-12