Author: micah
Date: 2005-07-30 13:19:48 +0000 (Sat, 30 Jul 2005)
New Revision: 1500
Modified:
data/CAN/list
Log:
Update to xsupplicant and gopher
Modified: data/CAN/list
==================================================================---
data/CAN/list 2005-07-30 05:31:48 UTC (rev 1499)
+++ data/CAN/list 2005-07-30 13:19:48 UTC (rev 1500)
@@ -414,9 +414,7 @@
{DSA-766-1}
- webcalender (unfixed; bug #315671; medium)
CAN-2005-2437 [xsupplicant leaks sensitive password information into logfile]
- - xsupplicant (unfixed; bug #317703; medium)
-CAN-2005-XXXX [Insecure temp usage in gopher]
- - gopher 3.0.8 (low)
+ - xsupplicant 1.0.1-5
CAN-2005-XXXX [fiaif: Package provided cron job updates conf files with access
definitions]
NOTE: This doesn''t look like a real security issue as cron.daily
should only be
NOTE: writable by root, but lets include it as the maintainer considers it an
issue
@@ -2601,7 +2599,8 @@
NOTE: reserved
CAN-2005-1854
NOTE: reserved
-CAN-2005-1853
+CAN-2005-1853 [Insecure temp usage in gopher]
+ - gopher 3.0.8 (low)
NOTE: reserved
{DSA-770-1}
CAN-2005-1852 (Multiple integer overflows in libgadu, as used in Kopete in KDE
3.2.3 ...)