Author: stef-guest Date: 2006-09-11 17:40:14 +0000 (Mon, 11 Sep 2006) New Revision: 4719 Modified: data/CVE/list Log: libgd2, imagemagick, graphicsmagick fixed Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-09-10 21:29:36 UTC (rev 4718) +++ data/CVE/list 2006-09-11 17:40:14 UTC (rev 4719) @@ -308,7 +308,7 @@ - php5 5.1.6-1 - php4 <not-affected> (Vulnerable function doesn''t exist) CVE-2006-4484 (Buffer overflow in the LWZReadByte_ function in ...) - - libgd2 <unfixed> (medium; bug #384838) + - libgd2 2.0.33-5.1 (medium; bug #384838) - xloadimage <unfixed> (low; bug #384841) CVE-2006-4483 (The cURL extension files (1) ext/curl/interface.c and (2) ...) - php5 5.1.6-1 (low) @@ -1215,7 +1215,7 @@ CVE-2006-4072 (Multiple SQL injection vulnerabilities in Club-Nuke [XP] 2.0 LCID 2048 ...) NOT-FOR-US: Club-Nuke [XP] CVE-2006-4144 (Integer overflow in the ReadSGIImage function in sgi.c in ImageMagick ...) - - imagemagick <unfixed> (medium; bug #383314) + - imagemagick 7:6.2.4.5.dfsg1-0.10 (medium; bug #383314) - graphicsmagick 1.1.7-7 (medium; bug #383333) CVE-2006-XXXX [crash in the certificate verification logic] NOTE: GNUTLS-SA-2006-2 @@ -2008,10 +2008,12 @@ - linux-2.6.16 <unfixed> CVE-2006-3744 (Multiple integer overflows in ImageMagick before 6.2.9 allows ...) {DSA-1168-1} - - imagemagick <unfixed> (bug #385062) + - imagemagick 7:6.2.4.5.dfsg1-0.10 (bug #385062) + - graphicsmagick 1.1.7-7 CVE-2006-3743 (Multiple buffer overflows in ImageMagick before 6.2.9 allow ...) {DSA-1168-1} - - imagemagick <unfixed> (bug #385062) + - imagemagick 7:6.2.4.5.dfsg1-0.10 (bug #385062) + - graphicsmagick 1.1.7-8 CVE-2006-3742 (The KDE PAM configuration shipped with Fedora Core 5 causes KDM ...) TODO: check CVE-2006-3741