Author: pdwerryh-guest Date: 2004-11-06 05:17:00 -0700 (Sat, 06 Nov 2004) New Revision: 86 Modified: sarge-checks/CAN/list Log: processed my block Modified: sarge-checks/CAN/list ==================================================================--- sarge-checks/CAN/list 2004-11-05 23:12:47 UTC (rev 85) +++ sarge-checks/CAN/list 2004-11-06 12:17:00 UTC (rev 86) @@ -2342,10 +2342,15 @@ CAN-2003-0899 NOTE: covered by DSA-396 CAN-2003-0898 + NOTE: not-for-us (IBM DB2) CAN-2003-0897 + NOTE: not-for-us (microsoft) CAN-2003-0896 + NOTE: not-for-us (Sun/Java) CAN-2003-0895 + NOTE: not-for-us (Apple) CAN-2003-0894 + NOTE: not-for-us (Oracle) CAN-2003-0893 NOTE: reserved CAN-2003-0892 @@ -2367,21 +2372,34 @@ CAN-2003-0884 NOTE: reserved CAN-2003-0883 + NOTE: not-for-us (Apple) CAN-2003-0882 + NOTE: not-for-us (Apple) CAN-2003-0881 + NOTE: not-for-us (Apple) CAN-2003-0880 + NOTE: not-for-us (Apple) CAN-2003-0879 NOTE: rejected CAN-2003-0878 + NOTE: not-for-us (Apple) CAN-2003-0877 + NOTE: not-for-us (Apple) CAN-2003-0876 + NOTE: not-for-us (Apple) CAN-2003-0875 + TODO: slpd.all_init not used in Debian + TODO: but source package still distributes it. CAN-2003-0874 + NOTE: not-for-us (Deskpro) CAN-2003-0873 NOTE: reserved CAN-2003-0872 + NOTE: not-for-us (SCO) CAN-2003-0871 + NOTE: not-for-us (Apple) CAN-2003-0870 + NOTE: not-for-us (Opera) CAN-2003-0869 NOTE: reserved CAN-2003-0868 @@ -2392,86 +2410,144 @@ NOTE: covered by DSA-395 CAN-2003-0865 NOTE: covered by DSA-435 + - mpg123 0.59r-15 CAN-2003-0864 + - ircd-irc2 2.10.3p5-1 CAN-2003-0863 + TODO: php4, not clear that this was ever fixed CAN-2003-0862 NOTE: rejected CAN-2003-0861 + - php4 4:4.3.3-1 CAN-2003-0860 + - php4 4:4.3.3-1 CAN-2003-0859 + NOTE: affects glibc 2.2.4, Debian uses 2.3.2 CAN-2003-0858 NOTE: covered by DSA-415 CAN-2003-0857 NOTE: reserved CAN-2003-0856 NOTE: covered by DSA-492 + - iproute 20010824-13.1 CAN-2003-0855 + - pan 0.13.4-1 CAN-2003-0854 + TODO: coreutils: when was this fixed? CAN-2003-0853 + TODO: coreutils: when was this fixed? CAN-2003-0852 + - sylpheed-claws 0.9.8claws-1 CAN-2003-0851 + NOTE: affects openssl 0.9.6. Testing uses 0.9.7. CAN-2003-0850 NOTE: covered by DSA-410 + - libnids1 1.18-1 CAN-2003-0849 + - cfengine2 2.0.9+2.1.0b3-1 CAN-2003-0848 NOTE: covered by DSA-428 - slocate 2.7-3 CAN-2003-0847 + NOTE: not-for-us (SuSE) CAN-2003-0846 + NOTE: not-for-us (SuSE) CAN-2003-0845 + NOTE: not-for-us (JBoss) CAN-2003-0844 + NOTE: libapache-mod-gzip, vulnerable only when compiled in debug mode + TODO: unchecked CAN-2003-0843 + NOTE: libapache-mod-gzip, vulnerable only when compiled in debug mode + TODO: unchecked CAN-2003-0842 + NOTE: libapache-mod-gzip, vulnerable only when compiled in debug mode + TODO: unchecked CAN-2003-0841 + NOTE: not-for-us (Peoplesoft) CAN-2003-0840 + NOTE: not-for-us (HPUX) CAN-2003-0839 + NOTE: not-for-us (microsoft) CAN-2003-0838 + NOTE: not-for-us (microsoft) CAN-2003-0837 + NOTE: not-for-us (IBM DB2) CAN-2003-0836 + NOTE: not-for-us (IBM DB2) CAN-2003-0835 + NOTE: not-for-us (mplayer) CAN-2003-0834 + NOTE: not-for-us (CDE) CAN-2003-0833 NOTE: covered by DSA-392 + - webfs 1.20 CAN-2003-0832 NOTE: covered by DSA-392 + - webfs 1.20 CAN-2003-0831 + - proftpd 1.2.9-1 CAN-2003-0830 NOTE: covered by DSA-390 + NOTE: marbles package not in testing or unstable CAN-2003-0829 NOTE: reserved CAN-2003-0828 NOTE: covered by DSA-391 + - freesweep 0.88-4.1 CAN-2003-0827 + NOTE: not-for-us (IBM DB2) CAN-2003-0826 + - lsh-server 1.4.2-6 CAN-2003-0824 + NOTE: not-for-us (microsoft) CAN-2003-0823 + NOTE: not-for-us (microsoft) CAN-2003-0822 + NOTE: not-for-us (microsoft) CAN-2003-0821 + NOTE: not-for-us (microsoft) CAN-2003-0820 + NOTE: not-for-us (microsoft) CAN-2003-0819 + NOTE: not-for-us (microsoft) CAN-2003-0818 + NOTE: not-for-us (microsoft) CAN-2003-0817 + NOTE: not-for-us (microsoft) CAN-2003-0816 + NOTE: not-for-us (microsoft) CAN-2003-0815 + NOTE: not-for-us (microsoft) CAN-2003-0814 + NOTE: not-for-us (microsoft) CAN-2003-0813 + NOTE: not-for-us (microsoft) CAN-2003-0812 + NOTE: not-for-us (microsoft) CAN-2003-0811 NOTE: reserved CAN-2003-0810 NOTE: reserved CAN-2003-0809 - - apache2 2.0.51 + NOTE: not-for-us (microsoft) CAN-2003-0808 NOTE: reserved CAN-2003-0807 + NOTE: not-for-us (microsoft) CAN-2003-0806 + NOTE: not-for-us (microsoft) CAN-2003-0805 NOTE: covered by DSA-387 + NOTE: gopherd not in testing or unstable (deprecated) CAN-2003-0804 + NOTE: not-for-us (BSD) CAN-2003-0803 + NOTE: not-for-us (Nokia) CAN-2003-0802 + NOTE: not-for-us (Nokia) CAN-2003-0801 + NOTE: not-for-us (Nokia) CAN-2003-0800 NOTE: reserved