Author: joeyh Date: 2011-12-01 21:14:25 +0000 (Thu, 01 Dec 2011) New Revision: 17731 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2011-12-01 20:23:49 UTC (rev 17730) +++ data/CVE/list 2011-12-01 21:14:25 UTC (rev 17731) @@ -1,3 +1,17 @@ +CVE-2011-4647 (Multiple cross-site scripting (XSS) vulnerabilities in the story ...) + TODO: check +CVE-2011-4646 (SQL injection vulnerability in wp-postratings.php in the ...) + TODO: check +CVE-2011-4645 + RESERVED +CVE-2011-4644 + RESERVED +CVE-2011-4643 + RESERVED +CVE-2011-4642 + RESERVED +CVE-2003-1597 + RESERVED CVE-2011-4641 RESERVED CVE-2011-4640 @@ -724,8 +738,7 @@ CVE-2011-4345 (Cross-site scripting (XSS) vulnerability in Namazu before 2.0.21, when ...) - namazu2 2.0.21-1 (low) [squeeze] - namazu2 <no-dsa> (Minor issue) -CVE-2011-4344 - RESERVED +CVE-2011-4344 (Cross-site scripting (XSS) vulnerability in Jenkins Core in CloudBees ...) - jenkins-winstone <unfixed> (bug #649900) CVE-2011-4343 RESERVED @@ -1955,8 +1968,8 @@ RESERVED CVE-2011-4002 (HP no Mawashimono Nikki 6.6 and earlier allows remote attackers to ...) TODO: check -CVE-2011-4001 - RESERVED +CVE-2011-4001 (Directory traversal vulnerability in HP no Mawashimono Nikki 6.6 and ...) + TODO: check CVE-2011-4000 (Buffer overflow in ChaSen 2.4.x allows remote attackers to execute ...) - chasen <unfixed> (medium; bug #648359) CVE-2011-3999 (Cross-site scripting (XSS) vulnerability in the RSS/Atom feed-reader ...) @@ -3099,6 +3112,7 @@ CVE-2011-3561 (Unspecified vulnerability in the Java Runtime Environment component in ...) - sun-java6 <unfixed> (bug #645881) CVE-2011-3560 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 @@ -3109,28 +3123,34 @@ - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 CVE-2011-3557 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 CVE-2011-3556 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 CVE-2011-3555 (Unspecified vulnerability in the Java Runtime Environment component in ...) - sun-java6 <unfixed> (bug #645881) CVE-2011-3554 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 CVE-2011-3553 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 CVE-2011-3552 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 CVE-2011-3551 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 @@ -3139,10 +3159,12 @@ CVE-2011-3549 (Unspecified vulnerability in the Java Runtime Environment component in ...) - sun-java6 <unfixed> (bug #645881) CVE-2011-3548 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 CVE-2011-3547 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 @@ -3151,6 +3173,7 @@ CVE-2011-3545 (Unspecified vulnerability in the Java Runtime Environment component in ...) - sun-java6 <unfixed> (bug #645881) CVE-2011-3544 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 @@ -3199,6 +3222,7 @@ CVE-2011-3522 (Unspecified vulnerability in SysFW 8.0 on certain SPARC T3, Netra ...) NOT-FOR-US: SPARC T3, Netra SPARC T3, Sun Fire, and Sun Blade CVE-2011-3521 (Unspecified vulnerability in the Java Runtime Environment component in ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 @@ -3537,6 +3561,7 @@ [lenny] - masqmail <no-dsa> (no security issue by itself) [squeeze] - masqmail <no-dsa> (no security issue by itself) CVE-2011-3389 (The SSL protocol, as used in certain configurations in Microsoft ...) + {DSA-2356-1} - sun-java6 <unfixed> (bug #645881) - openjdk-6 6b23~pre11-1 - openjdk-7 7~b147-2.0-1 @@ -6230,8 +6255,8 @@ RESERVED CVE-2011-2462 RESERVED -CVE-2011-2461 - RESERVED +CVE-2011-2461 (Cross-site scripting (XSS) vulnerability in the Adobe Flex SDK 3.x and ...) + TODO: check CVE-2011-2460 (Adobe Flash Player before 10.3.183.11 and 11.x before 11.1.102.55 on ...) NOT-FOR-US: Adobe Flash Player CVE-2011-2459 (Adobe Flash Player before 10.3.183.11 and 11.x before 11.1.102.55 on ...)