Author: joeyh Date: 2005-10-07 21:14:18 +0000 (Fri, 07 Oct 2005) New Revision: 2345 Modified: data/CAN/list Log: automatic CAN database update Modified: data/CAN/list ==================================================================--- data/CAN/list 2005-10-07 18:48:56 UTC (rev 2344) +++ data/CAN/list 2005-10-07 21:14:18 UTC (rev 2345) @@ -133,7 +133,7 @@ NOTE: reserved CAN-2005-3118 RESERVED - {DSA-845} + {DSA-845-1} NOTE: reserved - mason 1.0.0-3 CAN-2005-3117 @@ -152,27 +152,27 @@ NOT-FOR-US: Macromedia Breeze CAN-2005-3110 (Race condition in ebtables netfilter module (ebtables.c) in Linux 2.6, ...) - linux-2.6 2.6.12-1 - - kernel-source-2.6.8 2.6.8-16sarge1 + - kernel-source-2.6.8 2.6.8-16sarge1 NOTE: Reported directly to Horms NOTE: 2.4.27 not applicable CAN-2005-3109 (The HFS and HFS+ (hfsplus) modules in Linux 2.6 allows attackers to ...) - linux-2.6 2.6.12-1 - - kernel-source-2.6.8 2.6.8-16sarge1 + - kernel-source-2.6.8 2.6.8-16sarge1 NOTE: Reported directly to Horms TODO: 2.4.27 affected? Horms asking upstream: http://lkml.org/lkml/2005/10/7/3/index.html CAN-2005-3108 (mm/ioremap.c in Linux 2.6 on 64-bit x86 systems allows local users to ...) - linux-2.6 2.6.12-1 - - kernel-source-2.6.8 2.6.8-16sarge1 + - kernel-source-2.6.8 2.6.8-16sarge1 NOTE: Reported directly to Horms CAN-2005-3107 (fs/exec.c in Linux 2.6, when one thread is tracing another thread that ...) - linux-2.6 <unfixed> - - kernel-source-2.6.8 2.6.8-16sarge1 + - kernel-source-2.6.8 2.6.8-16sarge1 NOTE: Reported directly to Horms CAN-2005-3106 (Race condition in Linux 2.6, when threads are sharing memory mapping ...) - - kernel-source-2.6.8 2.6.8-16sarge1 + - kernel-source-2.6.8 2.6.8-16sarge1 NOTE: Reported directly to Horms CAN-2005-3105 (The mrpotect code (mprotect.c) in Linux 2.6 on Itanium IA64 Montecito ...) - - kernel-source-2.6.8 2.6.8-16sarge1 + - kernel-source-2.6.8 2.6.8-16sarge1 - kernel-source-2.4.27 <unfixed> (bug #332569; medium) NOTE: Reported directly to Horms CAN-2005-XXXX [horde3 maintainer scripts don''t set sufficiently strict permissions on config files] @@ -613,7 +613,7 @@ - abiword 2.2.10-1 (bug #329839; medium) CAN-2005-2963 [Mod-Authshadow: Incorrect enforcement of AuthShadow when ''require group'' is set] RESERVED - {DSA-844} + {DSA-844-1} - mod-auth-shadow 1.4-2 (bug #323789; medium) CAN-2005-2962 (The post-installation script for ntlmaps before 0.9.9 sets ...) {DSA-830-1} @@ -7476,6 +7476,7 @@ CAN-2005-1230 (Directory traversal vulnerability in Yawcam 0.2.5 allows remote ...) NOT-FOR-US: Yawcan CAN-2005-1229 (Directory traversal vulnerability in cpio 2.6 and earlier allows ...) + {DSA-846-1} - cpio 2.6-6 (bug #306693; medium) CAN-2005-1228 (Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through ...) {DSA-752-1} @@ -7879,6 +7880,7 @@ CAN-2005-1112 (IBM WebSphere Application Server 6.0 and earlier, when sharing the ...) NOT-FOR-US: IBM Websphere CAN-2005-1111 (Race condition in cpio 2.6 and earlier allows local users to modify ...) + {DSA-846-1} - cpio 2.6-6 (bug #305372; low) CAN-2005-1110 (Stack-based buffer overflow in the RespondeHTTPPendiente function in ...) NOT-FOR-US: Sumus web server