Author: stef-guest
Date: 2007-02-27 23:17:53 +0100 (Tue, 27 Feb 2007)
New Revision: 5488
Modified:
data/CVE/list
Log:
- wireshark fixes were not applied, new fixed version
- ekiga fixed
- isdnutils fixed
Modified: data/CVE/list
==================================================================---
data/CVE/list 2007-02-27 20:52:33 UTC (rev 5487)
+++ data/CVE/list 2007-02-27 22:17:53 UTC (rev 5488)
@@ -78,7 +78,7 @@
CVE-2007-1007 (Format string vulnerability in GnomeMeeting 1.0.2 and earlier
allows ...)
- gnomemeeting <unfixed> (high)
CVE-2007-1006 (Multiple format string vulnerabilities in the ...)
- - ekiga <unfixed> (bug #411944; high)
+ - ekiga 2.0.3-2.1 (bug #411944; high)
CVE-2007-1005
RESERVED
CVE-2007-1004 (Mozilla Firefox mmight allow remote attackers to condut spoofing
and ...)
@@ -136,7 +136,7 @@
CVE-2007-0982 (Cross-site scripting (XSS) vulnerability in error.php in
TaskFreak! ...)
NOT-FOR-US: TaskFreak!
CVE-2007-XXXX [capi_{cmsg,message}2str not thread-safe; vulnerable to buffer
overflow]
- - isdnutils <unfixed> (bug #408530)
+ - isdnutils 1:3.9.20060704-3 (bug #408530)
- asterisk-chan-capi <unfixed> (bug #411293)
- linux-2.6 <unfixed> (bug #411294)
CVE-2007-0981 (Mozilla based browsers, including Firefox, allow remote
attackers to ...)
@@ -527,7 +527,7 @@
CVE-2007-0858
RESERVED
CVE-2007-0857 (Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin
before ...)
- - moin <unfixed> (bug #410338; medium; bug #410552)
+ - moin 1.5.3-1.2 (bug #410338; medium; bug #410552)
CVE-2007-0856 (TmComm.sys 1.5.0.1052 in the Trend Micro Anti-Rootkit Common
Module ...)
NOT-FOR-US: Trend Micro Anti-Rootkit Common Module
CVE-2007-0855 (Stack-based buffer overflow in RARLabs Unrar, as packaged in
WinRAR ...)
@@ -1501,16 +1501,16 @@
CVE-2007-0460 (Multiple buffer overflows in ulogd for SUSE Linux 9.3 up to
10.1, and ...)
- ulogd 1.23-6 (medium)
CVE-2007-0459 (packet-tcp.c in the TCP dissector in Wireshark (formerly
Ethereal) ...)
- - wireshark 0.99.4-4 (low)
+ - wireshark 0.99.4-5 (low)
[sarge] - ethereal <not-affected> (Vulnerable code not present)
CVE-2007-0458 (Unspecified vulnerability in the HTTP dissector in Wireshark
(formerly ...)
- - wireshark 0.99.4-4 (low)
+ - wireshark 0.99.4-5 (low)
[sarge] - ethereal <not-affected> (Vulnerable code not present)
CVE-2007-0457 (Unspecified vulnerability in the IEEE 802.11 dissector in
Wireshark ...)
- - wireshark 0.99.4-4 (low)
+ - wireshark 0.99.4-5 (low)
[sarge] - ethereal <not-affected> (Vulnerable code not present)
CVE-2007-0456 (Unspecified vulnerability in the LLT dissector in Wireshark
(formerly ...)
- - wireshark 0.99.4-4 (low)
+ - wireshark 0.99.4-5 (low)
[sarge] - ethereal <not-affected> (Vulnerable code not present)
CVE-2007-0455 (Buffer overflow in the gdImageStringFTEx function in gdft.c in
GD ...)
- libgd2 <unfixed> (bug #408982; low)