Author: nion Date: 2007-09-18 22:43:04 +0000 (Tue, 18 Sep 2007) New Revision: 6639 Modified: data/CVE/list Log: CVE-2007-4411, CVE-2007-4410 and CVE-2007-4408 fixed in ircd-ircu 2.10.12.10.dfsg1-1 Modified: data/CVE/list ==================================================================--- data/CVE/list 2007-09-18 22:38:43 UTC (rev 6638) +++ data/CVE/list 2007-09-18 22:43:04 UTC (rev 6639) @@ -1158,13 +1158,13 @@ CVE-2007-4412 (Multiple cross-site scripting (XSS) vulnerabilities in Headstart ...) NOT-FOR-US: Deskpro CVE-2007-4411 (ircu 2.10.12.05 and earlier allows remote attackers to discover the ...) - - ircd-ircu <unfixed> (bug #439314) + - ircd-ircu 2.10.12.10.dfsg1-1 (bug #439314) CVE-2007-4410 (ircu 2.10.12.05 and earlier does not properly synchronize a kick ...) - - ircd-ircu <unfixed> (bug #439314) + - ircd-ircu 2.10.12.10.dfsg1-1 (bug #439314) CVE-2007-4409 (Race condition in ircu 2.10.12.01 through 2.10.12.05 allows remote ...) - ircd-ircu <not-affected> (Version affected not yet in unstable, maintainer informed) CVE-2007-4408 (ircu 2.10.12.05 and earlier ignores timestamps in bounces, which ...) - - ircd-ircu <unfixed> (bug #439314) + - ircd-ircu 2.10.12.10.dfsg1-1 (bug #439314) CVE-2007-4407 (ircu 2.10.12.03 and 2.10.12.04 does not associate a timestamp with ops ...) - ircd-ircu <not-affected> (Version affected not yet in unstable, maintainer informed) CVE-2007-4406 (ircu 2.10.12.01 through 2.10.12.04 does not remove ops privilege after ...)