joeyh at alioth.debian.org
2007-Oct-23 21:14 UTC
[Secure-testing-commits] r7080 - data/CVE
Author: joeyh Date: 2007-10-23 21:14:10 +0000 (Tue, 23 Oct 2007) New Revision: 7080 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2007-10-23 20:38:33 UTC (rev 7079) +++ data/CVE/list 2007-10-23 21:14:10 UTC (rev 7080) @@ -1,3 +1,69 @@ +CVE-2003-1461 (Buffer overflow in rwrite for HP-UX 11.0 could allow local users to ...) + TODO: check +CVE-2003-1460 (Worker Filemanager 1.0 through 2.7 sets the permissions on the ...) + TODO: check +CVE-2003-1459 (Multiple PHP remote file inclusion vulnerabilities in ttCMS 2.2 and ...) + TODO: check +CVE-2003-1458 (SQL injection vulnerability in Profile.php in ttCMS 2.2 and ttForum ...) + TODO: check +CVE-2003-1457 (Auerswald COMsuite CTI ControlCenter 3.1 creates a default ...) + TODO: check +CVE-2003-1456 (Album.pl 6.1 allows remote attackers to execute arbitrary commands, ...) + TODO: check +CVE-2003-1455 (Multiple buffer overflows in the launch_bcrelay function in pptpctrl.c ...) + TODO: check +CVE-2003-1454 (Invision Power Services Invision Board 1.0 through 1.1.1, when a forum ...) + TODO: check +CVE-2003-1453 (Cross-site scripting (XSS) vulnerability in the MytextSanitizer ...) + TODO: check +CVE-2003-1452 (Untrusted search path vulnerability in Qualcomm qpopper 4.0 through ...) + TODO: check +CVE-2003-1451 (Buffer overflow in Symantec Norton AntiVirus 2002 allows remote ...) + TODO: check +CVE-2003-1450 (BitchX 75p3 and 1.0c16 through 1.0c20cvs allows remote attackers to ...) + TODO: check +CVE-2003-1449 (Aladdin Knowlege Systems eSafe Gateway 3.5.126.0 does not check the ...) + TODO: check +CVE-2003-1448 (Memory leak in the Windows 2000 kernel allows remote attackers to ...) + TODO: check +CVE-2003-1447 (IBM WebSphere Advanced Server Edition 4.0.4 uses a weak encryption ...) + TODO: check +CVE-2003-1446 (Buffer overflow in the save_into_file function in save.c for Rogue ...) + TODO: check +CVE-2003-1445 (Stack-based buffer overflow in Far Manager 1.70beta1 and earlier ...) + TODO: check +CVE-2003-1444 (Kaspersky Antivirus (KAV) 4.0.9.0 allows local users to cause a denial ...) + TODO: check +CVE-2003-1443 (Kaspersky Antivirus (KAV) 4.0.9.0 does not detect viruses in files ...) + TODO: check +CVE-2003-1442 (The web administration page for the Ericsson HM220dp ADSL modem does ...) + TODO: check +CVE-2003-1441 (Posadis 0.50.4 through 0.50.8 allows remote attackers to cause a ...) + TODO: check +CVE-2003-1440 (SpamProbe 0.8a allows remote attackers to cause a denial of service ...) + TODO: check +CVE-2003-1439 (Secure Internet Live Conferencing (SILC) 0.9.11 and 0.9.12 stores ...) + TODO: check +CVE-2003-1438 (Race condition in BEA WebLogic Server and Express 5.1 through 7.0.0.1, ...) + TODO: check +CVE-2003-1437 (BEA WebLogic Express and WebLogic Server 7.0 and 7.0.0.1, stores ...) + TODO: check +CVE-2003-1436 (PHP remote file inclusion vulnerability in nukebrowser.php in ...) + TODO: check +CVE-2003-1435 (SQL injection vulnerability in PHP-Nuke 5.6 and 6.0 allows remote ...) + TODO: check +CVE-2003-1434 (login_ldap 3.1 and 3.2 allows remote attackers to initiate ...) + TODO: check +CVE-2003-1433 (Epic Games Unreal Engine 226f through 436 does not validate the ...) + TODO: check +CVE-2003-1432 (Epic Games Unreal Engine 226f through 436 allows remote attackers to ...) + TODO: check +CVE-2003-1431 (Buffer overflow in Epic Games Unreal Engine 226f through 436 allows ...) + TODO: check +CVE-2003-1430 (Directory traversal vulnerability in Unreal Tournament Server 436 and ...) + TODO: check +CVE-2003-1429 (Buffer overflow in Proxomitron Naoko 4.4 allows remote attackers to ...) + TODO: check CVE-2007-5622 RESERVED CVE-2007-5621 (Multiple cross-site scripting (XSS) vulnerabilities in the Token ...) @@ -1410,7 +1476,7 @@ CVE-2007-5192 RESERVED CVE-2007-5191 (mount and umount in util-linux call the setuid and setgid functions in ...) - {DTSA-64-1} + {DTSA-64-1 DTSA-70-1} - util-linux 2.13-8 (low) - loop-aes-utils 2.13-2 (low) CVE-2007-5190 (Multiple cross-site scripting (XSS) vulnerabilities in Alcatel ...) @@ -2822,8 +2888,8 @@ RESERVED CVE-2007-4575 RESERVED -CVE-2007-4574 - RESERVED +CVE-2007-4574 (Unspecified vulnerability in the stack unwinder fixes in Red Hat ...) + TODO: check CVE-2007-4573 (The IA32 system call emulation functionality in Linux kernel 2.4.x and ...) {DSA-1381-2 DSA-1378-2 DSA-1378-1} - linux-2.6 <unfixed> (medium) @@ -4436,8 +4502,7 @@ CVE-2007-3851 (The drm/i915 component in the Linux kernel before 2.6.22.2, when used ...) {DSA-1356-1} - linux-2.6 2.6.22-4 -CVE-2007-3850 [Kernel ppc64 DoS] - RESERVED +CVE-2007-3850 (The eHCA driver in Linux kernel 2.6 before 2.6.22, when running on ...) - linux-2.6 <not-affected> (Debian''s kernel doesn''t enable CONFIG_PPC_64K_PAGES) CVE-2007-3849 (Red Hat Enterprise Linux (RHEL) 5 ships the rpm for the Advanced ...) NOT-FOR-US: RedHat Advanced Intrusion Detection Environment