Author: nion Date: 2008-01-21 16:06:37 +0000 (Mon, 21 Jan 2008) New Revision: 7999 Modified: data/CVE/list Log: CVE-2008-029[5,6] fixed in vlc 0.8.6.c-6 Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-01-21 15:43:17 UTC (rev 7998) +++ data/CVE/list 2008-01-21 16:06:37 UTC (rev 7999) @@ -108,9 +108,9 @@ CVE-2008-0297 (PhotoKorn allows remote attackers to obtain database credentials via a ...) NOT-FOR-US: PhotoKorn CVE-2008-0296 (Heap-based buffer overflow in the libaccess_realrtsp plugin in ...) - - vlc <unfixed> (bug #461544; medium) + - vlc 0.8.6.c-6 (bug #461544; medium) CVE-2008-0295 (Heap-based buffer overflow in modules/access/rtsp/real_sdpplin.c in ...) - - vlc <unfixed> (bug #461544; medium) + - vlc 0.8.6.c-6 (bug #461544; medium) NOTE: this does not affect xine-lib itself, its just vlc that ships a really old version of it CVE-2008-0294 (Unspecified vulnerability in the seat-locking implementation in ...) NOT-FOR-US: FreeSeat