Author: joeyh Date: 2005-01-21 23:59:55 +0100 (Fri, 21 Jan 2005) New Revision: 306 Modified: sarge-checks/CAN/list Log: updates Modified: sarge-checks/CAN/list ==================================================================--- sarge-checks/CAN/list 2005-01-21 20:14:14 UTC (rev 305) +++ sarge-checks/CAN/list 2005-01-21 22:59:55 UTC (rev 306) @@ -1,11 +1,11 @@ CAN-2005-0132 NOTE: reserved CAN-2005-0131 - TODO: check + - konversation 0.15-3 CAN-2005-0130 - TODO: check + - konversation 0.15-3 CAN-2005-0129 - TODO: check + - konversation 0.15-3 CAN-2005-0128 NOTE: reserved CAN-2005-0127 @@ -40,7 +40,7 @@ CAN-2005-0113 (inpview in SGI IRIX allows local users to execute arbitrary commands ...) NOTE: not-for-us (IRIX) CAN-2005-0112 (The web-based administrative interface for 3Com OfficeConnect Wireless ...) - TODO: check + NOTE: not-for-us (3Com OfficeConnect Wireless 11g Access Point) CAN-2005-0111 (Stack-based buffer overflow in the websql CGI program in MySQL MaxDB ...) - maxdb-7.5.00 7.5.00.18 CAN-2005-0110 (Internet Explorer 6 on Windows XP SP2 allows remote attackers to ...) @@ -100,6 +100,7 @@ CAN-2005-0084 NOTE: reserved {DSA-653-1} + - ethereal 0.10.9-1 CAN-2005-0083 NOTE: reserved CAN-2005-0082 (The sapdbwa_GetUserData function in MySQL MaxDB 7.5.0.0, and other ...) @@ -155,10 +156,10 @@ CAN-2005-0064 (Buffer overflow in the Decrypt::makeFileKey2 function in Decrypt.cc ...) {DSA-648-1 DSA-645-1} - xpdf 3.00-12 - - gpdf (unfixed; bug #291244) + - gpdf 2.8.2-1.1 - koffice (unfixed; bug #291245) - - kpdf 291251 - - pdftohtml (unfixed; bug #291250) + - kdegraphics 4:3.3.2-1 + - pdftohtml 0.36-7.3 - tetex-bin 2.0.2-26 CAN-2005-0063 NOTE: reserved @@ -343,14 +344,19 @@ NOTE: reserved CAN-2005-0010 NOTE: reserved + - ethereal 0.10.9-1 CAN-2005-0009 NOTE: reserved + - ethereal 0.10.9-1 CAN-2005-0008 NOTE: reserved + - ethereal 0.10.9-1 CAN-2005-0007 NOTE: reserved + - ethereal 0.10.9-1 CAN-2005-0006 NOTE: reserved + - ethereal 0.10.9-1 CAN-2005-0005 (Heap-based buffer overflow in psd.c for ImageMagick 6.1.0, 6.1.7, and ...) {DSA-646-1} - imagemagick 6:6.0.6.2-2.1 @@ -594,9 +600,9 @@ NOTE: not-for-us (Netscape Directory Server on HP-UX) CAN-2004-1235 (Race condition in the (1) load_elf_library and (2) binfmt_aout ...) - kernel-source-2.6.8 2.6.8-12 - - kernel-image-2.6.8-2-386 + - kernel-image-2.6.8-2-386 2.6.8-12 - kernel-source-2.4.27 2.4.27-8 - - kernel-image-2.4.27-1-386 + - kernel-image-2.4.27-1-386 2.4.27-8 NOTE: and other binary packages built from them CAN-2004-1234 (load_elf_binary in Linux before 2.4.26 allows local users to cause a ...) NOTE: fixed after 2.4.25 @@ -991,6 +997,7 @@ NOTE: reserved CAN-2004-1056 (Direct Rendering Manager (DRM) driver in Linux kernel 2.6 does not ...) - kernel-source-2.4.27 2.4.27-8 + - kernel-image-2.4.27-i386 2.4.27-8 - kernel-source-2.6.8 2.6.8-11 NOTE: and the binaries built from them CAN-2004-1055 (Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin ...)