Author: joeyh Date: 2012-01-20 21:14:22 +0000 (Fri, 20 Jan 2012) New Revision: 18238 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-01-20 18:28:21 UTC (rev 18237) +++ data/CVE/list 2012-01-20 21:14:22 UTC (rev 18238) @@ -1,4 +1,203 @@ +CVE-2012-0884 + RESERVED +CVE-2012-0883 + RESERVED +CVE-2012-0882 + RESERVED +CVE-2012-0881 + RESERVED +CVE-2012-0880 + RESERVED +CVE-2012-0879 + RESERVED +CVE-2012-0878 + RESERVED +CVE-2012-0877 + RESERVED +CVE-2012-0876 + RESERVED +CVE-2012-0875 + RESERVED +CVE-2012-0874 + RESERVED +CVE-2012-0873 + RESERVED +CVE-2012-0872 + RESERVED +CVE-2012-0871 + RESERVED +CVE-2012-0870 + RESERVED +CVE-2012-0869 + RESERVED +CVE-2012-0868 + RESERVED +CVE-2012-0867 + RESERVED +CVE-2012-0866 + RESERVED +CVE-2012-0865 + RESERVED +CVE-2012-0864 + RESERVED +CVE-2012-0863 + RESERVED +CVE-2012-0862 + RESERVED +CVE-2012-0861 + RESERVED +CVE-2012-0860 + RESERVED +CVE-2012-0859 + RESERVED +CVE-2012-0858 + RESERVED +CVE-2012-0857 + RESERVED +CVE-2012-0856 + RESERVED +CVE-2012-0855 + RESERVED +CVE-2012-0854 + RESERVED +CVE-2012-0853 + RESERVED +CVE-2012-0852 + RESERVED +CVE-2012-0851 + RESERVED +CVE-2012-0850 + RESERVED +CVE-2012-0849 + RESERVED +CVE-2012-0848 + RESERVED +CVE-2012-0847 + RESERVED +CVE-2012-0846 + RESERVED +CVE-2012-0845 + RESERVED +CVE-2012-0844 + RESERVED +CVE-2012-0843 + RESERVED +CVE-2012-0842 + RESERVED +CVE-2012-0841 + RESERVED +CVE-2012-0840 + RESERVED +CVE-2012-0839 + RESERVED +CVE-2012-0838 + RESERVED +CVE-2012-0837 + RESERVED +CVE-2012-0836 + RESERVED +CVE-2012-0835 + RESERVED +CVE-2012-0834 + RESERVED +CVE-2012-0833 + RESERVED +CVE-2012-0832 + RESERVED +CVE-2012-0831 + RESERVED +CVE-2012-0830 + RESERVED +CVE-2012-0829 + RESERVED +CVE-2012-0828 + RESERVED +CVE-2012-0827 + RESERVED +CVE-2012-0826 + RESERVED +CVE-2012-0825 + RESERVED +CVE-2012-0824 + RESERVED +CVE-2012-0823 + RESERVED +CVE-2012-0822 + RESERVED +CVE-2012-0821 + RESERVED +CVE-2012-0820 + RESERVED +CVE-2012-0819 + RESERVED +CVE-2012-0818 + RESERVED +CVE-2012-0817 + RESERVED +CVE-2012-0816 + RESERVED +CVE-2012-0815 + RESERVED +CVE-2012-0814 + RESERVED +CVE-2012-0813 + RESERVED +CVE-2012-0812 + RESERVED +CVE-2012-0811 + RESERVED +CVE-2012-0810 + RESERVED +CVE-2012-0809 + RESERVED +CVE-2012-0808 + RESERVED +CVE-2012-0807 + RESERVED +CVE-2012-0806 + RESERVED +CVE-2012-0805 + RESERVED +CVE-2012-0804 + RESERVED +CVE-2012-0803 + RESERVED +CVE-2012-0802 + RESERVED +CVE-2012-0801 + RESERVED +CVE-2012-0800 + RESERVED +CVE-2012-0799 + RESERVED +CVE-2012-0798 + RESERVED +CVE-2012-0797 + RESERVED +CVE-2012-0796 + RESERVED +CVE-2012-0795 + RESERVED +CVE-2012-0794 + RESERVED +CVE-2012-0793 + RESERVED +CVE-2012-0792 + RESERVED +CVE-2012-0791 + RESERVED +CVE-2012-0790 + RESERVED +CVE-2012-0789 + RESERVED +CVE-2012-0788 + RESERVED +CVE-2012-0787 + RESERVED +CVE-2012-0786 + RESERVED CVE-2012-0885 [AST-2012-001 asterisk srtp remote crash] + RESERVED - asterisk <unfixed> (bug #656596) [squeeze] - asterisk <not-affected> (Vulnerable code not present) [lenny] - asterisk <not-affected> (Vulnerable code not present) @@ -964,8 +1163,8 @@ RESERVED CVE-2012-0330 RESERVED -CVE-2012-0329 - RESERVED +CVE-2012-0329 (Cisco Digital Media Manager 5.2.2 and earlier, and 5.2.3, allows ...) + TODO: check CVE-2012-0328 RESERVED CVE-2012-0327 @@ -1164,8 +1363,8 @@ RESERVED CVE-2012-0269 RESERVED -CVE-2012-0268 - RESERVED +CVE-2012-0268 (Integer overflow in the CYImage::LoadJPG method in YImage.dll in ...) + TODO: check CVE-2012-0267 (The StopModule method in the NTR ActiveX control before 2.0.4.8 allows ...) TODO: check CVE-2012-0266 (Multiple stack-based buffer overflows in the NTR ActiveX control ...) @@ -1671,8 +1870,8 @@ RESERVED CVE-2011-4874 RESERVED -CVE-2011-4873 - RESERVED +CVE-2011-4873 (Unspecified vulnerability in the server in Certec EDV atvise before ...) + TODO: check CVE-2011-4872 RESERVED CVE-2011-4871 @@ -1869,8 +2068,8 @@ RESERVED CVE-2012-0194 RESERVED -CVE-2012-0193 - RESERVED +CVE-2012-0193 (IBM WebSphere Application Server (WAS) 6.0 through 6.0.2.43, 6.1 ...) + TODO: check CVE-2012-0192 RESERVED CVE-2012-0191 @@ -2409,6 +2608,7 @@ CVE-2010-5075 RESERVED CVE-2012-0785 [Jenkins and hash collision attack] + RESERVED - jenkins-winstone 0.9.10-jenkins-31+dfsg-1 (bug #655553) - jenkins-executable-war 1.25-1 (bug #655554) - jenkins 1.409.3+dfsg-2 @@ -2419,13 +2619,13 @@ RESERVED NOT-FOR-US: batavi not in Debian CVE-2012-0068 + RESERVED - wireshark <unfixed> TODO: check version +CVE-2012-0067 RESERVED -CVE-2012-0067 - wireshark <unfixed> TODO: check version - RESERVED CVE-2012-0066 RESERVED - wireshark <unfixed> @@ -2482,8 +2682,7 @@ CVE-2012-0051 RESERVED - tahoe-lafs <not-affected> (Only affects 1.9.0, not uploaded to the archive) -CVE-2012-0050 - RESERVED +CVE-2012-0050 (OpenSSL 0.9.8s and 1.0.0f does not properly support DTLS applications, ...) - openssl 1.0.0g-1 NOTE: http://www.openssl.org/news/secadv_20120118.txt CVE-2012-0049 @@ -2532,8 +2731,7 @@ RESERVED CVE-2012-0036 RESERVED -CVE-2012-0035 [global-ede-mode executes Lisp code in Project.ede] - RESERVED +CVE-2012-0035 (Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as ...) - cedet <unfixed> (low; bug #655299) - emacs23 <unfixed> (low; bug #655300) CVE-2012-0034 @@ -2672,8 +2870,8 @@ RESERVED CVE-2011-4660 RESERVED -CVE-2011-4659 - RESERVED +CVE-2011-4659 (Cisco TelePresence Software before TE 4.1.1 on the Cisco IP Video ...) + TODO: check CVE-2011-4658 RESERVED CVE-2011-4657 @@ -3421,8 +3619,8 @@ RESERVED CVE-2011-4375 RESERVED -CVE-2011-4374 - RESERVED +CVE-2011-4374 (Integer overflow in Adobe Reader 9.x before 9.4.6 on Linux allows ...) + TODO: check CVE-2011-4373 (Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on ...) NOT-FOR-US: Adobe Acrobat Reader CVE-2011-4372 (Adobe Reader and Acrobat before 9.5, and 10.x before 10.1.2, on ...) @@ -4205,10 +4403,10 @@ CVE-2011-4136 (django.contrib.sessions in Django before 1.2.7 and 1.3.x before 1.3.1, ...) {DSA-2332-1} - python-django 1.3.1-1 (bug #641405) -CVE-2011-4135 - RESERVED -CVE-2011-4134 - RESERVED +CVE-2011-4135 (Multiple directory traversal vulnerabilities in lmgrd in Flexera ...) + TODO: check +CVE-2011-4134 (Heap-based buffer overflow in lmadmin in Flexera FlexNet Publisher ...) + TODO: check CVE-2011-4133 [MSA-11-0002] RESERVED {DSA-2262-1} @@ -4410,8 +4608,8 @@ CVE-2011-4073 (Use-after-free vulnerability in the cryptographic helper handler ...) {DSA-2374-1} - openswan 1:2.6.37-1 (low; bug #650674) -CVE-2007-6744 - RESERVED +CVE-2007-6744 (Flexera Macrovision InstallShield before 2008 sends a ...) + TODO: check CVE-2006-7246 RESERVED CVE-2011-4072 @@ -4462,8 +4660,8 @@ NOT-FOR-US: Siemens Tecnomatix CVE-2011-4054 (Cross-site scripting (XSS) vulnerability in login.fcc in CA SiteMinder ...) NOT-FOR-US: CA SiteMinder -CVE-2011-4053 - RESERVED +CVE-2011-4053 (Untrusted search path vulnerability in 7-Technologies (7T) Interactive ...) + TODO: check CVE-2011-4052 (Stack-based buffer overflow in CEServer.exe in the CEServer component ...) NOT-FOR-US: InduSoft Web Studio CVE-2011-4051 (CEServer.exe in the CEServer component in the Remote Agent module in ...) @@ -12316,8 +12514,8 @@ NOT-FOR-US: IBM Rational Rhapsody CVE-2011-1390 RESERVED -CVE-2011-1389 - RESERVED +CVE-2011-1389 (Multiple directory traversal vulnerabilities in the vendor daemon in ...) + TODO: check CVE-2011-1388 (The Blueberry FlashBack ActiveX control in BB FlashBack Recorder.dll ...) NOT-FOR-US: IBM Rational Rhapsody CVE-2011-1387