Author: jmm-guest Date: 2005-09-10 11:56:34 +0000 (Sat, 10 Sep 2005) New Revision: 1899 Modified: data/CAN/list Log: mark outstanding issues that only manifest in the source packages as "unimportant". Modified: data/CAN/list ==================================================================--- data/CAN/list 2005-09-10 09:14:17 UTC (rev 1898) +++ data/CAN/list 2005-09-10 11:56:34 UTC (rev 1899) @@ -391,7 +391,7 @@ CAN-2005-2693 (cvsbug in CVS 1.12.12 and earlier creates temporary files insecurely, ...) {DSA-806-1 DSA-802-1} NOTE: cvs: not shipped in binary package - - cvs 1:1.12.9-15 (bug #325106; low) + - cvs 1:1.12.9-15 (bug #325106; unimportant) - gcvs 1.0final-8 (low) CAN-2005-2692 (Multiple SQL injection vulnerabilities in RunCMS 1.2 and earlier allow ...) NOTE: not-for-us (RunCMS) @@ -1786,7 +1786,7 @@ CAN-2005-2312 (management.php in Realnode Emilda 1.2.2 and earlier allows remote ...) NOTE: not-for-us (Realnode Emilda) CAN-2005-2311 (SMS 1.9.2m and earlier allows local users to overwrite arbitrary files ...) - - sms-pl (unfixed; bug #320540; low) + - sms-pl (unfixed; bug #320540; unimportant) NOTE: vulnerable contrib file only in source package CAN-2005-2310 (Buffer overflow in Winamp 5.03a, 5.09 and 5.091 allows remote ...) NOTE: not-for-us (Winamp) @@ -2938,7 +2938,7 @@ NOTE: tetex-bin not affected re bug #322467 - gpdf (unfixed; low) NOTE: only affects cupsys source package, not used in binary - - cupsys (unfixed; bug #324464; low) + - cupsys (unfixed; bug #324464; unimportant) - poppler 0.4.0-1 (low) CAN-2005-2096 (Buffer overflow in zlib 1.2 and later versions allows remote attackers ...) {DSA-797-1 DSA-740-1} @@ -10532,7 +10532,7 @@ - kdegraphics 3.3.2-2 - tetex-bin 2.0.2-26 NOTE: only affects source package, not used in binary - - cupsys (unfixed; bug #324459; low) + - cupsys (unfixed; bug #324459; unimportant) CAN-2005-0063 (The document processing application used by the Windows Shell in ...) NOTE: not-for-us (Microsoft) CAN-2005-0062 @@ -11839,7 +11839,7 @@ {DSA-599-1 DSA-581-1 DSA-573-1} - koffice 1:1.3.4-1 NOTE: only affects source package, not used in binary - - cupsys (unfixed; bug #324460; low) + - cupsys (unfixed; bug #324460; unimportant) CAN-2004-0887 (SUSE Linux Enterprise Server 9 on the S/390 platform does not properly ...) NOTE: waldi provided this info - linux-kernel-image-2.6.8-s390 2.6.8-3