Author: jmm-guest Date: 2005-07-29 16:58:57 +0000 (Fri, 29 Jul 2005) New Revision: 1486 Modified: data/CAN/list Log: thunderbird and sympa fixed Modified: data/CAN/list ==================================================================--- data/CAN/list 2005-07-29 16:55:20 UTC (rev 1485) +++ data/CAN/list 2005-07-29 16:58:57 UTC (rev 1486) @@ -50,11 +50,11 @@ CAN-2005-2270 (Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone ...) - mozilla-firefox 1.0.5-1 (high) - mozilla (unfixed; bug #318062; high) - - mozilla-thunderbird (unfixed; bug #318728; high) + - mozilla-thunderbird 1.0.6-1 (high) CAN-2005-2269 (Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly verify ...) - mozilla-firefox 1.0.5-1 (high) - mozilla (unfixed; bug #318062; medium) - - mozilla-thunderbird (unfixed; bug #318728; medium) + - mozilla-thunderbird 1.0.6-1 (medium) CAN-2005-2268 (Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly ...) - mozilla-firefox 1.0.5-1 (medium) - mozilla (unfixed; bug #318062; medium) @@ -63,11 +63,11 @@ CAN-2005-2266 (Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to ...) - mozilla-firefox 1.0.5-1 (medium) - mozilla (unfixed; bug #318062; medium) - - mozilla-thunderbird (unfixed; bug #318728; low) + - mozilla-thunderbird 1.0.6-1 (low) CAN-2005-2265 (Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers ...) - mozilla-firefox 1.0.5-1 (high) - mozilla (unfixed; bug #318062; medium) - - mozilla-thunderbird (unfixed; bug #318728; medium) + - mozilla-thunderbird 1.0.6-1 (medium) CAN-2005-2264 (Firefox before 1.0.5 allows remote attackers to steal sensitive ...) - mozilla-firefox 1.0.5-1 (medium) CAN-2005-2263 (The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla ...) @@ -78,7 +78,7 @@ CAN-2005-2261 (Firefox before 1.0.5, Thunderbird before 1.0.5, and Mozilla before ...) - mozilla-firefox 1.0.5-1 (medium) - mozilla (unfixed; bug #318062; medium) - - mozilla-thunderbird (unfixed; bug #318728; medium) + - mozilla-thunderbird 1.0.6-1 (medium) CAN-2005-2260 (The browser user interface in Firefox before 1.0.5 and Mozilla before ...) - mozilla-firefox 1.0.5-1 (medium) - mozilla (unfixed; bug #318062; medium) @@ -3113,7 +3113,7 @@ CAN-2005-1532 (Firefox before 1.0.4 and Mozilla Suite before 1.7.8 does not properly ...) - mozilla-firefox 1.0.4 - mozilla-browser 2:1.7.8 - - mozilla-thunderbird (unfixed; bug #318728; high) + - mozilla-thunderbird 1.0.6-1 (high) CAN-2005-1531 (Firefox before 1.0.4 and Mozilla Suite before 1.7.8 does not properly ...) - mozilla-firefox 1.0.4 - mozilla-browser 2:1.7.8 @@ -4844,11 +4844,11 @@ CAN-2005-1160 (The privileged "chrome" UI code in Firefox before 1.0.3 and Mozilla ...) - mozilla-firefox 1.0.3-1 - mozilla 1.7.7-1 - - mozilla-thunderbird (unfixed; bug #318728; high) + - mozilla-thunderbird 1.0.6-1 (high) CAN-2005-1159 (The native implementations of InstallTrigger and other functions in ...) - mozilla-firefox 1.0.3-1 - mozilla 1.7.7-1 - - mozilla-thunderbird (unfixed; bug #318728; medium) + - mozilla-thunderbird 1.0.6-1 (medium) CAN-2005-1158 (Multiple "missing security checks" in Firefox before 1.0.3 allow ...) - mozilla-firefox 1.0.3-1 CAN-2005-1157 (Firefox before 1.0.3, Mozilla Suite before 1.7.7, and Netscape 7.2 ...) @@ -5232,7 +5232,7 @@ CAN-2005-0989 (The find_replen function in jsstr.c in the the Javascript engine for ...) - mozilla 1.7.7-1 - mozilla-firefox 1.0.2-3 - - mozilla-thunderbird (unfixed; bug #318728; medium) + - mozilla-thunderbird 1.0.6-1 (medium) CAN-2005-0988 (Race condition in gzip 1.2.4, 1.3.3, and earlier, when decompressing a ...) {DSA-752-1} - gzip 1.3.5-10 @@ -6546,7 +6546,7 @@ CAN-2004-1736 (Cacti 0.8.5a allows remote attackers to gain sensitive information via ...) - cacti 0.8.5a-5 CAN-2004-1735 (Cross-site scripting (XSS) vulnerability in the create list option in ...) - - sympa (unfixed; bug #298105; low) + - sympa 4.1.5-4 (low) CAN-2004-1734 (PHP remote code injection vulnerability in Mantis 0.19.0a allows ...) - mantis 0.19.2-1 CAN-2004-1733 (Directory traversal vulnerability in MyDMS 1.4.2 and other versions ...)