Author: stef-guest Date: 2006-10-24 20:15:36 +0000 (Tue, 24 Oct 2006) New Revision: 4879 Modified: data/CVE/list Log: another asterisk issue and CVEs Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-10-24 19:47:13 UTC (rev 4878) +++ data/CVE/list 2006-10-24 20:15:36 UTC (rev 4879) @@ -1,7 +1,5 @@ CVE-2006-XXXX [serendipity XSS for registered authors] - serendipity 1.0.2-1 (low) -CVE-2006-XXXX [Asterisk Cisco SCCP "chan_skinny" Integer Overflow Vulnerability] - - asterisk <unfixed> (medium; bug filed) CVE-2006-5460 (** DISPUTED ** ...) TODO: check CVE-2006-5459 (Multiple PHP remote file inclusion vulnerabilities in Download-Engine ...) @@ -34,9 +32,9 @@ CVE-2006-5446 (SQL injection vulnerability in lobby/config.php in Casinosoft Casino ...) TODO: check CVE-2006-5445 (Unspecified vulnerability in the SIP channel driver ...) - TODO: check + - asterisk <unfixed> (medium; bug #395080) CVE-2006-5444 (Integer overflow in the get_input function in the Skinny channel ...) - TODO: check + - asterisk <unfixed> (medium; bug #395080) CVE-2006-5443 (Unspecified vulnerability in XIAO Gang WWW Interactive Mathematics ...) TODO: check CVE-2006-5442 (ViewVC 1.0.2 and earlier does not specify a charset in its HTTP ...)