Author: stef-guest Date: 2005-02-27 23:19:57 +0100 (Sun, 27 Feb 2005) New Revision: 499 Modified: sarge-checks/CAN/list Log: check some CANs Modified: sarge-checks/CAN/list ==================================================================--- sarge-checks/CAN/list 2005-02-27 08:14:31 UTC (rev 498) +++ sarge-checks/CAN/list 2005-02-27 22:19:57 UTC (rev 499) @@ -149,25 +149,28 @@ CAN-2005-0543 (Cross-site scripting (XSS) vulnerability phpMyAdmin 2.6.1 allows ...) TODO: check CAN-2005-0542 (saveUser.do in Cyclades AlterPath Manager (APM) Console Server 1.2.1 ...) - TODO: check + NOTE: not-for-us (Cyclades AlterPath Manager) CAN-2005-0541 (consoleConnect.jsp in Cyclades AlterPath Manager (APM) Console Server ...) - TODO: check + NOTE: not-for-us (Cyclades AlterPath Manager) CAN-2005-0540 (Cyclades AlterPath Manager (APM) Console Server 1.2.1 allows remote ...) - TODO: check + NOTE: not-for-us (Cyclades AlterPath Manager) CAN-2005-0539 (Unknown vulnerability in IBM Hardware Management Console (HMC) before ...) - TODO: check + NOTE: not-for-us (IBM) CAN-2005-0538 (Directory traversal vulnerability in (1) GinpPictureServlet.java and ...) TODO: check CAN-2005-0537 (Multiple SQL injection vulnerabilities in page.php for iGeneric (iG) ...) - TODO: check + NOTE: not-for-us (iGeneric (iG) Shop) CAN-2005-0536 (Directory traversal vulnerability in MediaWiki 1.3.x before 1.3.11 and ...) - TODO: check + NOTE: not-for-us (MediaWiki not yet in Debian) + TODO: track ITP: #217571 CAN-2005-0535 (Cross-site request forgery (CSRF) vulnerability in MediaWiki 1.3.x ...) - TODO: check + NOTE: not-for-us (MediaWiki not yet in Debian) + TODO: track ITP: #217571 CAN-2005-0534 (Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.x ...) - TODO: check + NOTE: not-for-us: (MediaWiki not yet in Debian) + TODO: track ITP: #217571 CAN-2005-0533 (Heap-based buffer overflow in Trend Micro AntiVirus Library VSAPI ...) - TODO: check + NOTE: not-for-us (Trend Micro AntiVirus) CAN-2005-0532 (The reiserfs_copy_from_user_to_file_region function in reiserfs/file.c ...) - kernel-source-2.6.8 (unfixed; bug #296897) TODO: watch 2.6.10 if it gets into sarge