Author: fw Date: 2006-09-27 17:28:01 +0000 (Wed, 27 Sep 2006) New Revision: 4772 Modified: data/CVE/list Log: CVE-2005-1127: postgrey fixed Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-09-27 17:20:56 UTC (rev 4771) +++ data/CVE/list 2006-09-27 17:28:01 UTC (rev 4772) @@ -23764,11 +23764,12 @@ CVE-2005-1127 (Format string vulnerability in the log function in Net::Server 0.87 ...) {DSA-1122 DSA-1121} - libnet-server-perl 0.89-1 (bug #378640) - NOTE: This was already fixed in 0.87-1, although the changelog doesn''t mention + NOTE: Net::Server was already fixed in 0.87-1, although the changelog doesn''t mention NOTE: the security implication, which was noticed later. I''ve verified both fixes NOTE: are identical NOTE: but DSA-1122 thinks it was fixed in 0.89-1, so mark that version to make NOTE: scripts happy (at time of writing, 0.90-1 is in testing) + - postgrey 1.22-1 CVE-2005-1126 (The SIOCGIFCONF ioctl (ifconf function) in FreeBSD 4.x through 4.11 ...) NOT-FOR-US: Free BSD CVE-2005-1125 (Race condition in libsafe 2.0.16 and earlier, when running in ...)