Author: joeyh Date: 2005-01-06 09:14:18 +0100 (Thu, 06 Jan 2005) New Revision: 246 Modified: sarge-checks/CAN/list Log: automatic CAN database update Modified: sarge-checks/CAN/list ==================================================================--- sarge-checks/CAN/list 2005-01-05 12:39:26 UTC (rev 245) +++ sarge-checks/CAN/list 2005-01-06 08:14:18 UTC (rev 246) @@ -1,3 +1,111 @@ +CAN-2005-0032 + NOTE: reserved +CAN-2005-0031 + NOTE: reserved +CAN-2005-0030 + NOTE: reserved +CAN-2005-0029 + NOTE: reserved +CAN-2005-0028 + NOTE: reserved +CAN-2005-0027 + NOTE: reserved +CAN-2005-0026 + NOTE: reserved +CAN-2005-0025 + NOTE: reserved +CAN-2005-0024 + NOTE: reserved +CAN-2005-0023 + NOTE: reserved +CAN-2005-0022 + TODO: check +CAN-2005-0021 + TODO: check +CAN-2005-0020 + NOTE: reserved +CAN-2005-0019 + NOTE: reserved +CAN-2005-0018 + NOTE: reserved +CAN-2005-0017 + NOTE: reserved +CAN-2005-0016 + NOTE: reserved +CAN-2005-0015 + NOTE: reserved +CAN-2005-0014 + NOTE: reserved +CAN-2005-0013 + NOTE: reserved +CAN-2005-0012 + NOTE: reserved +CAN-2005-0011 + NOTE: reserved +CAN-2005-0010 + NOTE: reserved +CAN-2005-0009 + NOTE: reserved +CAN-2005-0008 + NOTE: reserved +CAN-2005-0007 + NOTE: reserved +CAN-2005-0006 + NOTE: reserved +CAN-2005-0005 + NOTE: reserved +CAN-2005-0004 + NOTE: reserved +CAN-2005-0003 + NOTE: reserved +CAN-2005-0002 + NOTE: reserved +CAN-2005-0001 + NOTE: reserved +CAN-2004-1339 + TODO: check +CAN-2004-1338 + TODO: check +CAN-2004-1337 + TODO: check +CAN-2004-1336 + TODO: check +CAN-2004-1335 + TODO: check +CAN-2004-1334 + TODO: check +CAN-2004-1333 + TODO: check +CAN-2004-1332 + TODO: check +CAN-2004-1331 + TODO: check +CAN-2004-1330 + TODO: check +CAN-2004-1329 + TODO: check +CAN-2004-1328 + TODO: check +CAN-2004-1327 + TODO: check +CAN-2004-1326 + TODO: check +CAN-2004-1325 + TODO: check +CAN-2004-1324 + TODO: check +CAN-2004-1323 + TODO: check +CAN-2004-1322 + TODO: check +CAN-2004-1321 + TODO: check +CAN-2004-1320 + TODO: check +CAN-2004-1319 + TODO: check +CAN-2004-1318 + TODO: check CAN-2004-1317 (Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, ...) NOTE: apparently only affects netcat in windows CAN-2004-1316 (Heap-based buffer overflow in MSG_UnEscapeSearchUrl in ...) @@ -8,8 +116,8 @@ NOTE: not-for-us (MacOS) CAN-2004-1313 (The Smc.exe process in My Firewall Plus 5.0 build 1117, and possibly ...) NOTE: not-for-us (My Firewall Plus) -CAN-2004-1312 - NOTE: reserved +CAN-2004-1312 (A bug in the HTML parser in a certain Microsoft HTML library, as used ...) + TODO: check CAN-2004-1311 (Integer overflow in the real_setup_and_get_header function in real.c ...) NOTE: not-for-us (mplayer) CAN-2004-1310 (Stack-based buffer overflow in the asf_mmst_streaming.c functionality ...) @@ -24,8 +132,8 @@ NOTE: reserved CAN-2004-1306 NOTE: reserved -CAN-2004-1305 - NOTE: reserved +CAN-2004-1305 (The Windows Animated Cursor (ANI) in Windows NT, Windows 2000 through ...) + TODO: check CAN-2004-1304 (Stack-based buffer overflow in the ELF header parsing code in file ...) - file 4.12 CAN-2004-1303 (Buffer overflow in the get function in get.c for Yanf 0.4 allows ...) @@ -166,8 +274,8 @@ NOTE: reserved CAN-2004-1237 NOTE: reserved -CAN-2004-1236 - NOTE: reserved +CAN-2004-1236 (Buffer overflow in the LDAP component for Netscape Directory Server ...) + TODO: check CAN-2004-1235 NOTE: reserved CAN-2004-1234 (load_elf_binary in Linux before 2.4.26 allows local users to cause a ...) @@ -374,7 +482,7 @@ TODO: check CAN-2004-1139 (Unknown vulnerability in the DICOM dissector in Ethereal 0.10.4 ...) TODO: check -CAN-2004-1138 (Unknown vulnerability in Vim modeline options, such as (1) termcap, ...) +CAN-2004-1138 (VIM before 6.3 and gVim before 6.3 allow local users to execute ...) - vim 1:6.3-046+0sarge1 CAN-2004-1137 (Multiple vulnerabilities in the IGMP functionality for Linux kernel ...) - kernel-image-2.4.27-i386 2.4.27-7 @@ -658,6 +766,7 @@ NOTE: cyrus-imapd not vulnerable NOTE: cyrus21-imapd not vulnetale CAN-2004-1010 (Buffer overflow in Info-Zip 2.3 and possibly earlier versions, when ...) + {DSA-624-1} - zip 2.30-8 CAN-2004-1009 NOTE: reserved @@ -802,7 +911,7 @@ NOTE: dup of CAN-2004-0599 CAN-2004-0954 NOTE: rejected -CAN-2004-0953 (Buffer overflow in the C2S module in Jabber 2.x server (Jabberd) ...) +CAN-2004-0953 (Buffer overflow in the C2S module in the open source Jabber 2.x server ...) NOTE: jabber version 2 is vulnerable, we have an older version that seems not CAN-2004-0952 NOTE: reserved @@ -931,7 +1040,7 @@ - mozilla-firefox 0.10.1+1.0PR - mozilla 1.7.3 - mozilla-thunderbird 0.8 -CAN-2004-0901 (Microsoft Word for Windows 6.0 Converter does not properly validate ...) +CAN-2004-0901 (Microsoft Word for Windows 6.0 Converter (MSWRD632.WPC), as used in ...) NOTE: not-for-us (Microsoft) CAN-2004-0900 (The DHCP Server service for Microsoft Windows NT 4.0 Server and ...) NOTE: not-for-us (Microsoft)