Author: pabs Date: 2012-03-19 02:34:29 +0000 (Mon, 19 Mar 2012) New Revision: 18710 Modified: data/CVE/list Log: Add bug numbers for tremulous issues Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-03-18 23:22:01 UTC (rev 18709) +++ data/CVE/list 2012-03-19 02:34:29 UTC (rev 18710) @@ -9914,7 +9914,7 @@ NOTE: Current openarena packages use the share ioquake3 engine [squeeze] - openarena <no-dsa> (Minor issue, will be fixed in point update) - ioquake3 1.36+svn1946-4 - - tremulous 1.1.0-6 + - tremulous 1.1.0-6 (bug #660836) [squeeze] - tremulous <no-dsa> (Contrib not supported) CVE-2011-3011 (BaseServiceImpl.class in CA ARCserve D2D r15 does not properly handle ...) NOT-FOR-US: CA ARCserve D2D @@ -10843,7 +10843,7 @@ NOTE: Current openarena packages use the share ioquake3 engine [squeeze] - openarena 0.8.5-5+squeeze1 - ioquake3 1.36+svn1946-4 - - tremulous 1.1.0-6 + - tremulous 1.1.0-6 (bug #660836) [squeeze] - tremulous <no-dsa> (Contrib not supported) CVE-2011-2763 (The web interface on the LifeSize Room appliance LS_RM1_3.5.3 (11) and ...) NOT-FOR-US: LifeSize Room appliance @@ -87952,11 +87952,11 @@ NOT-FOR-US: QuickZip CVE-2006-3325 (client/cl_parse.c in the id3 Quake 3 Engine 1.32c and the Icculus ...) - ioquake3 1.36+svn1788j-1 - - tremulous 1.1.0-6 + - tremulous 1.1.0-6 (bug #660834) [squeeze] - tremulous <no-dsa> (Contrib not supported) CVE-2006-3324 (The Automatic Downloading option in the id3 Quake 3 Engine and the ...) - ioquake3 1.36+svn1788j-1 - - tremulous 1.1.0-6 + - tremulous 1.1.0-6 (bug #660832) [squeeze] - tremulous <no-dsa> (Contrib not supported) CVE-2006-3323 (PHP remote file inclusion vulnerability in admin/admin.php in MF ...) NOT-FOR-US: MF Piadas @@ -90815,7 +90815,7 @@ [woody] - rsync <not-affected> (xattr patch appeared in 2.6.7) CVE-2006-2082 (Directory traversal vulnerability in Quake 3 engine, as used in ...) - ioquake3 1.36+svn1788j-1 - - tremulous 1.1.0-6 + - tremulous 1.1.0-6 (bug #660831) [squeeze] - tremulous <no-dsa> (Contrib not supported) CVE-2006-2081 (Oracle Database Server 10g Release 2 allows local users to execute ...) NOT-FOR-US: Oracle