Author: joeyh Date: 2006-09-21 21:14:31 +0000 (Thu, 21 Sep 2006) New Revision: 4752 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2006-09-21 17:26:03 UTC (rev 4751) +++ data/CVE/list 2006-09-21 21:14:31 UTC (rev 4752) @@ -1291,14 +1291,19 @@ - openssl097 0.9.7i-2 (medium) - openssl096 <removed> CVE-2006-4338 (unlzh.c in the LHZ component in gzip 1.3.5 allows context-dependent ...) + {DSA-1781-1} - gzip 1.3.5-15 (medium) CVE-2006-4337 (Buffer overflow in the make_table function in the LHZ component in ...) + {DSA-1781-1} - gzip 1.3.5-15 (high) CVE-2006-4336 (Buffer underflow in the build_tree function in unpack.c in gzip 1.3.5 allows ...) + {DSA-1781-1} - gzip 1.3.5-15 (high) CVE-2006-4335 (Array index error in the make_table function in unlzh.c in the LZH ...) + {DSA-1781-1} - gzip 1.3.5-15 (high) CVE-2006-4334 (Unspecified vulnerability in gzip 1.3.5 allows context-dependent ...) + {DSA-1781-1} - gzip 1.3.5-15 (high) CVE-2006-4333 (The SSCOP dissector in Wireshark (formerly Ethereal) before 0.99.3 allows ...) {DSA-1171} @@ -1841,6 +1846,7 @@ CVE-2006-4090 (Cross-site scripting (XSS) vulnerability in Webligo BlogHoster 2.2 ...) NOT-FOR-US: Webligo BlogHoster CVE-2006-4089 (Multiple buffer overflows in Andy Lo-A-Foe AlsaPlayer 0.99.76 and ...) + {DSA-1779-1 DSA-1779-1} - alsaplayer <unfixed> (medium; bug #382842) CVE-2006-4088 (Multiple cross-site scripting (XSS) vulnerabilities in CivicSpace ...) NOT-FOR-US: CivicSpace @@ -2035,8 +2041,10 @@ CVE-2006-4007 (PHP remote file inclusion vulnerability in index.php in Knusperleicht ...) NOT-FOR-US: Knusperleicht Faq CVE-2006-4006 (The do_gameinfo functionin BomberClone 0.11.6 and earlier, and ...) + {DSA-1780-1} - bomberclone 0.11.7-1 (bug #382082; medium) CVE-2006-4005 (BomberClone 0.11.6 and earlier allows remote attackers to cause a ...) + {DSA-1780-1} - bomberclone 0.11.7-1 (bug #382082; medium) CVE-2006-4004 (Directory traversal vulnerability in index.php in vbPortal 3.0.2 ...) NOT-FOR-US: vbPortal