Author: joeyh Date: 2005-02-10 21:14:18 +0100 (Thu, 10 Feb 2005) New Revision: 390 Modified: sarge-checks/CAN/list Log: automatic CAN database update Modified: sarge-checks/CAN/list ==================================================================--- sarge-checks/CAN/list 2005-02-10 19:07:17 UTC (rev 389) +++ sarge-checks/CAN/list 2005-02-10 20:14:18 UTC (rev 390) @@ -1,3 +1,21 @@ +CAN-2005-0259 + NOTE: reserved +CAN-2005-0258 + NOTE: reserved +CAN-2005-0257 + NOTE: reserved +CAN-2005-0256 + NOTE: reserved +CAN-2005-0255 + NOTE: reserved +CAN-2005-0254 + NOTE: reserved +CAN-2005-0253 + NOTE: reserved +CAN-2005-0252 + NOTE: reserved +CAN-2005-0251 + NOTE: reserved CAN-2005-0250 (Format string vulnerability in auditselect on IBM AIX 5.2 and 5.3 ...) NOTE: not-for-us (AIX) CAN-2005-0249 (Heap-based buffer overflow in the DEC2EXE module for Symantec ...) @@ -172,8 +190,8 @@ NOTE: reserved CAN-2005-0203 NOTE: reserved -CAN-2005-0202 - NOTE: reserved +CAN-2005-0202 (Directory traversal vulnerability in the true_path function in ...) + {DSA-674-1} - mailman 2.1.5-6 CAN-2005-0201 NOTE: reserved @@ -417,6 +435,7 @@ CAN-2005-0103 (PHP remote code injection vulnerability in webmail.php in SquirrelMail ...) - squirrelmail 2:1.4.4-1 CAN-2005-0102 (Integer overflow in camel-lock-helper in Evolution 2.0.2 and earlier ...) + {DSA-673-1} - evolution 2.0.3-1.2 CAN-2005-0101 (Buffer overflow in the socket_getline function in Newspost 2.1.1 and ...) - newspost 2.1.1-2 @@ -536,7 +555,7 @@ TODO: check CAN-2005-0055 (Internet Explorer 5.01, 5.5, and 6 does not properly validate buffers ...) TODO: check -CAN-2005-0054 (Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute ...) +CAN-2005-0054 (Internet Explorer 5.01, 5.5, and 6 allows remote attackers to spoof a ...) TODO: check CAN-2005-0053 (Internet Explorer 5.01, 5.5, and 6 allows remote attackers to execute ...) TODO: check @@ -684,6 +703,7 @@ {DSA-641-1} CAN-2005-0019 NOTE: reserved + {DSA-675-1} CAN-2005-0018 (The f2 shell script in the f2c package 3.1 allows local users to read ...) {DSA-661-1} CAN-2005-0017 (The f2c translator in the f2c package 3.1 allows local users to read ...) @@ -1093,6 +1113,7 @@ CAN-2004-1178 NOTE: reserved CAN-2004-1177 (Cross-site scripting (XSS) vulnerability in the driver script in ...) + {DSA-674-1} - mailman 2.1.5-5 CAN-2004-1176 (Buffer underflow in extfs.c in Midnight Commander (mc) 4.5.55 and ...) {DSA-639-1}