stef-guest at alioth.debian.org
2008-Jan-15 23:23 UTC
[Secure-testing-commits] r7934 - data/CVE
Author: stef-guest Date: 2008-01-15 23:23:55 +0000 (Tue, 15 Jan 2008) New Revision: 7934 Modified: data/CVE/list Log: temporarily put lenny versions into CVE/list, until the CVE ids are assigned Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-01-15 23:15:31 UTC (rev 7933) +++ data/CVE/list 2008-01-15 23:23:55 UTC (rev 7934) @@ -694,15 +694,19 @@ - mantis 1.0.8-4 (low; bug #458377) CVE-2007-XXXX [vlc arbitrary file overwrite vulnerability via crafted m3u playlists] - vlc 0.8.6.c-4.1 (medium; bug #458318) + [lenny] - vlc 0.8.6.c-4.1~lenny1 NOTE: see https://trac.videolan.org/vlc/ticket/1371 CVE-2007-XXXX [vlc format string vulnerability in built-in web-server] - vlc 0.8.6.c-4.1 (medium; bug #458318) + [lenny] - vlc 0.8.6.c-4.1~lenny1 NOTE: see http://www.securityfocus.com/archive/1/485488/30/0/threaded CVE-2007-XXXX [vlc buffer overflow in subtitle handling] - vlc 0.8.6.c-4.1 (low; bug #458318) + [lenny] - vlc 0.8.6.c-4.1~lenny1 NOTE: see http://www.securityfocus.com/archive/1/485488/30/0/threaded CVE-2007-XXXX [vlc remote denial of service in rtsp module] - vlc 0.8.6.c-4.1 (unimportant; bug #458318) + [lenny] - vlc 0.8.6.c-4.1~lenny1 NOTE: That''s hardly a security problem, just a bug CVE-2007-6598 (Dovecot before 1.0.10, with certain configuration options including ...) {DSA-1457-1}