Author: joeyh Date: 2005-01-09 20:56:04 +0100 (Sun, 09 Jan 2005) New Revision: 258 Modified: sarge-checks/CAN/list Log: fixes Modified: sarge-checks/CAN/list ==================================================================--- sarge-checks/CAN/list 2005-01-09 06:16:59 UTC (rev 257) +++ sarge-checks/CAN/list 2005-01-09 19:56:04 UTC (rev 258) @@ -224,7 +224,7 @@ CAN-2004-1265 (Buffer overflow in the readObjectChunk function in 3dsimp.cpp for the ...) NOTE: not-for-us (Convex) CAN-2004-1264 (Buffer overflow in the simplify_path function in config.c for ChBg 1.5 ...) - - chbg (unfixed; bug #285904) + - chbg 1.5-4 CAN-2004-1263 (changepassword.cgi in ChangePassword 0.8, when installed setuid, ...) NOTE: not-for-us (ChangePassword):w CAN-2004-1262 (Buffer overflow in the bsb_open_header function in libbsb for bsb2ppm ...) @@ -285,7 +285,7 @@ NOTE: reserved - kernel-source-2.6.8 2.6.9-5 NOTE: and binary packages built from it - - kernel-source-2.4.27 (unfixed; bug cloned) + - kernel-source-2.4.27 (unfixed; bug #289202) CAN-2004-1234 (load_elf_binary in Linux before 2.4.26 allows local users to cause a ...) TODO: check with kernel team CAN-2004-1233 (Integer overflow in Gadu-Gadu allows remote attackers to cause a ...) @@ -394,7 +394,7 @@ CAN-2004-1183 NOTE: reserved {DSA-626-1} - - libtiff-tools (unfixed; bug #288915) + - libtiff-tools 3.6.1-5 CAN-2004-1182 NOTE: reserved CAN-2004-1181 @@ -440,7 +440,7 @@ CAN-2004-1163 (Cisco CNS Network Registrar Central Configuration Management (CCM) ...) NOTE: not-for-us (Cisco) CAN-2004-1162 (The unison command in scponly before 4.0 does not properly restrict ...) - - scponly (unfixed; bug #284176) + - scponly 4.0-1 CAN-2004-1161 (rssh 2.2.2 and earlier does not properly restrict programs that can be ...) - rssh (unfixed; bug #284207) CAN-2004-1160 (Netscape 7.x to 7.2, and possibly other versions, allows remote ...) @@ -664,7 +664,7 @@ CAN-2004-1060 NOTE: reserved CAN-2004-1059 (Multiple cross-site scripting (XSS) vulnerabilities in mnoGoSearch ...) - - mnogosearch (unfixed; bug #288246) + - mnogosearch 3.2.18-2.2 CAN-2004-1058 (Race condition in Linux kernel 2.6 allows local users to read the ...) TODO: check with kernel team CAN-2004-1057