Author: alec-guest Date: 2006-07-29 18:26:52 +0000 (Sat, 29 Jul 2006) New Revision: 4476 Modified: data/CVE/list Log: * CVE-2006-1244 (gpdf): changelog didn''t mention that it was fixed, but is * CVE-2005-2097 (gpdf): fixed Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-07-29 17:24:06 UTC (rev 4475) +++ data/CVE/list 2006-07-29 18:26:52 UTC (rev 4476) @@ -6007,6 +6007,7 @@ {DSA-1019-1} - xpdf <not-affected> (All issues previously fixed) NOTE: Discussion has shown that the revamp patch doesn''t fix new vulnerabilities + - gpdf 2.10.0-3 CVE-2006-1243 (Directory traversal vulnerability in install05.php in Simple PHP Blog ...) NOT-FOR-US: Simple PHP Blog CVE-2006-1242 (The ip_push_pending_frames function in Linux 2.4.x and 2.6.x before ...) @@ -16912,7 +16913,7 @@ [woody] - tetex-bin <not-affected> (pdftex doesn''t include or use the vulnerable code) - tetex-bin <unfixed> TODO: Check, when sid was fixed for this - - gpdf <unfixed> (bug #334454; low) + - gpdf 2.10.0-4 (bug #334454; low) NOTE: Cups switched to xpdf-utils - cupsys 1.1.22-7 (bug #324464) [woody] - cupsys <not-affected> (Vulnerable code not present)