Author: joeyh Date: 2011-11-25 21:14:36 +0000 (Fri, 25 Nov 2011) New Revision: 17685 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2011-11-25 18:22:59 UTC (rev 17684) +++ data/CVE/list 2011-11-25 21:14:36 UTC (rev 17685) @@ -1,3 +1,21 @@ +CVE-2011-4548 (Multiple unspecified vulnerabilities in Google Chrome before ...) + TODO: check +CVE-2011-4547 + RESERVED +CVE-2011-4546 + RESERVED +CVE-2011-4545 + RESERVED +CVE-2011-4544 + RESERVED +CVE-2011-4543 + RESERVED +CVE-2011-4542 + RESERVED +CVE-2011-4541 + RESERVED +CVE-2011-4540 + RESERVED CVE-2011-XXXX - yaws <unfixed> (bug #650009) NOTE: According to bug report stable might not be affected, needs more investigation @@ -506,8 +524,7 @@ CVE-2011-4333 RESERVED NOT-FOR-US: LabWiki -CVE-2011-4332 - RESERVED +CVE-2011-4332 (Multiple cross-site scripting (XSS) vulnerabilities in Joomla! 1.6.3 ...) NOT-FOR-US: Joomla CVE-2011-4331 REJECTED @@ -539,8 +556,7 @@ CVE-2011-4322 RESERVED NOT-FOR-US: websitebaker -CVE-2011-4321 - RESERVED +CVE-2011-4321 (The password reset functionality in Joomla! 1.5.x through 1.5.24 uses ...) NOT-FOR-US: Joomla CVE-2011-4320 [ejabberd DoS in pubsub module] RESERVED @@ -569,8 +585,8 @@ {DSA-2347-1} - bind9 <unfixed> (high; bug #649099) NOTE: http://www.isc.org/software/bind/advisories/cve-2011-4313 -CVE-2011-4312 - RESERVED +CVE-2011-4312 (Multiple cross-site scripting (XSS) vulnerabilities in the commenting ...) + TODO: check CVE-2011-4311 (ResourceSpace before 4.2.2833 does not properly validate access keys, ...) NOT-FOR-US: ResourceSpace CVE-2011-4310 @@ -586,9 +602,11 @@ - moodle <not-affected> (Only affects 2.x) CVE-2011-4306 [MSA-11-0037] RESERVED + {DSA-2338-1} - moodle 1.9.9.dfsg2-4 CVE-2011-4305 [MSA-11-0036] RESERVED + {DSA-2338-1} - moodle 1.9.9.dfsg2-4 CVE-2011-4304 [MSA-11-0034] RESERVED @@ -598,9 +616,11 @@ - moodle <not-affected> (Only affects 2.x) CVE-2011-4302 [MSA-11-0032] RESERVED + {DSA-2338-1} - moodle 1.9.9.dfsg2-4 CVE-2011-4301 [MSA-11-0031] RESERVED + {DSA-2338-1} - moodle 1.9.9.dfsg2-4 CVE-2011-4300 [MSA-11-0029] RESERVED @@ -622,6 +642,7 @@ - moodle <not-affected> (Only affects 2.x) CVE-2011-4294 [MSA-11-0020] RESERVED + {DSA-2338-1} - moodle 1.9.9.dfsg2-4 CVE-2011-4293 [MSA-11-0019] RESERVED @@ -798,44 +819,44 @@ NOT-FOR-US: OlyKit Swoopo Clone 2010 CVE-2010-4971 (Cross-site scripting (XSS) vulnerability in VideoWhisper PHP 2 Way ...) NOT-FOR-US: VideoWhisper PHP 2 Way Video Chat -CVE-2011-4262 - RESERVED -CVE-2011-4261 - RESERVED -CVE-2011-4260 - RESERVED -CVE-2011-4259 - RESERVED -CVE-2011-4258 - RESERVED -CVE-2011-4257 - RESERVED -CVE-2011-4256 - RESERVED -CVE-2011-4255 - RESERVED -CVE-2011-4254 - RESERVED -CVE-2011-4253 - RESERVED -CVE-2011-4252 - RESERVED -CVE-2011-4251 - RESERVED -CVE-2011-4250 - RESERVED -CVE-2011-4249 - RESERVED -CVE-2011-4248 - RESERVED -CVE-2011-4247 - RESERVED -CVE-2011-4246 - RESERVED -CVE-2011-4245 - RESERVED -CVE-2011-4244 - RESERVED +CVE-2011-4262 (Unspecified vulnerability in RealNetworks RealPlayer before 15.0.0 ...) + TODO: check +CVE-2011-4261 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...) + TODO: check +CVE-2011-4260 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...) + TODO: check +CVE-2011-4259 (Integer underflow in RealNetworks RealPlayer before 15.0.0 allows ...) + TODO: check +CVE-2011-4258 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...) + TODO: check +CVE-2011-4257 (The Cook codec in RealNetworks RealPlayer before 15.0.0 allows remote ...) + TODO: check +CVE-2011-4256 (The RV30 codec in RealNetworks RealPlayer before 15.0.0 and Mac ...) + TODO: check +CVE-2011-4255 (Unspecified vulnerability in RealNetworks RealPlayer before 15.0.0 and ...) + TODO: check +CVE-2011-4254 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...) + TODO: check +CVE-2011-4253 (Unspecified vulnerability in the RV20 codec in RealNetworks RealPlayer ...) + TODO: check +CVE-2011-4252 (The RV10 codec in RealNetworks RealPlayer before 15.0.0 and Mac ...) + TODO: check +CVE-2011-4251 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...) + TODO: check +CVE-2011-4250 (Unspecified vulnerability in the ATRC codec in RealNetworks RealPlayer ...) + TODO: check +CVE-2011-4249 (Array index error in the RV30 codec in RealNetworks RealPlayer before ...) + TODO: check +CVE-2011-4248 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...) + TODO: check +CVE-2011-4247 (RealNetworks RealPlayer before 15.0.0 allows remote attackers to ...) + TODO: check +CVE-2011-4246 (The AAC codec in RealNetworks RealPlayer before 15.0.0 and Mac ...) + TODO: check +CVE-2011-4245 (The RealVideo renderer in RealNetworks RealPlayer before 15.0.0 and ...) + TODO: check +CVE-2011-4244 (Heap-based buffer overflow in the RealVideo renderer in RealNetworks ...) + TODO: check CVE-2011-4243 RESERVED CVE-2011-4242 @@ -1082,8 +1103,8 @@ RESERVED CVE-2011-4161 RESERVED -CVE-2011-4160 - RESERVED +CVE-2011-4160 (Unspecified vulnerability in HP Operations Agent 11.00 and Performance ...) + TODO: check CVE-2011-4159 (Unspecified vulnerability in System Administration Manager (SAM) in ...) NOT-FOR-US: HP-UX CVE-2011-4158 (Unspecified vulnerability in HP Directories Support for ProLiant ...) @@ -5338,7 +5359,7 @@ CVE-2011-2697 (foomatic-rip-hplip in HP Linux Imaging and Printing (HPLIP) 3.11.5 ...) - hplip 3.10.6-2 (bug #635549; medium) NOTE: hplip might have been fixed earlier than stable, current versions use foomatic-rip - NOTE: from foomatic-filters: /usr/lib/cups/filter/foomatic-rip + NOTE: from foomatic-filters: /usr/lib/cups/filter/foomatic-rip - foomatic-filters 4.0 NOTE: There two implementation of the affected filter: the version from foomatic-filters NOTE: 4.0 is written in C and has been assigned CVE-2011-2964 and the version in