joeyh at alioth.debian.org
2007-Dec-04 09:14 UTC
[Secure-testing-commits] r7495 - data/CVE
Author: joeyh Date: 2007-12-04 09:14:09 +0000 (Tue, 04 Dec 2007) New Revision: 7495 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2007-12-04 09:06:11 UTC (rev 7494) +++ data/CVE/list 2007-12-04 09:14:09 UTC (rev 7495) @@ -322,45 +322,51 @@ CVE-2007-6077 (The session fixation protection mechanism in cgi_process.rb in Rails ...) - rails 1.2.6-1 (low; bug #452748) CVE-2007-6111 (Multiple unspecified vulnerabilities in Wireshark (formerly Ethereal) ...) + {DTSA-92-1} - wireshark 0.99.7~pre1-1 (low) [etch] - wireshark <not-affected> (Vulnerable code not present) [sarge] - ethereal <not-affected> (Vulnerable code not present) CVE-2007-6112 (Buffer overflow in the PPP dissector Wireshark (formerly Ethereal) ...) + {DTSA-92-1} - wireshark 0.99.7~pre1-1 (medium) [etch] - wireshark <not-affected> (Vulnerable code not present) [sarge] - ethereal <not-affected> (Vulnerable code not present) CVE-2007-6113 (Wireshark (formerly Ethereal) 0.10.12 to 0.99.6 allows remote ...) + {DTSA-92-1} - wireshark 0.99.7~pre1-1 (low) NOTE: This is likely a dupe of CVE-2007-4721, pinged MITRE CVE-2007-6114 (Multiple buffer overflows in Wireshark (formerly Ethereal) 0.99.0 ...) - {DSA-1414-1} + {DSA-1414-1 DTSA-92-1} - wireshark 0.99.7~pre1-1 (medium) [sarge] - ethereal <not-affected> (Vulnerable code not present) CVE-2007-6115 (Buffer overflow in the ANSI MAP dissector for Wireshark (formerly ...) + {DTSA-92-1} - wireshark 0.99.7~pre1-1 (medium) [etch] - wireshark <not-affected> (Vulnerable code not present) [sarge] - ethereal <not-affected> (Vulnerable code not present) CVE-2007-6116 (The Firebird/Interbase dissector in Wireshark (formerly Ethereal) ...) + {DTSA-92-1} - wireshark 0.99.7~pre1-1 (low) [etch] - wireshark <not-affected> (Vulnerable code not present) [sarge] - ethereal <not-affected> (Vulnerable code not present) CVE-2007-6117 (Unspecified vulnerability in the HTTP dissector for Wireshark ...) - {DSA-1414-1} + {DSA-1414-1 DTSA-92-1} - wireshark 0.99.7~pre1-1 [sarge] - ethereal <not-affected> (Vulnerable code not present) CVE-2007-6118 (The MEGACO dissector in Wireshark (formerly Ethereal) 0.9.14 to 0.99.6 ...) - {DSA-1414-1} + {DSA-1414-1 DTSA-92-1} - wireshark 0.99.7~pre1-1 (low) CVE-2007-6119 (The DCP ETSI dissector in Wireshark (formerly Ethereal) 0.99.6 allows ...) + {DTSA-92-1} - wireshark 0.99.7~pre1-1 (low) [etch] - wireshark <not-affected> (Vulnerable code not present) [sarge] - ethereal <not-affected> (Vulnerable code not present) CVE-2007-6120 (The Bluetooth SDP dissector Wireshark (formerly Ethereal) 0.99.2 to ...) - {DSA-1414-1} + {DSA-1414-1 DTSA-92-1} - wireshark 0.99.7~pre1-1 (low) [sarge] - ethereal <not-affected> (Vulnerable code not present) CVE-2007-6121 (Wireshark (formerly Ethereal) 0.8.16 to 0.99.6 allows remote attackers ...) - {DSA-1414-1} + {DSA-1414-1 DTSA-92-1} - wireshark 0.99.7~pre1-1 (low) CVE-2007-6038 (PHP remote file inclusion vulnerability in xajax_functions.php in the ...) NOT-FOR-US: Joomla! extension