joeyh at alioth.debian.org
2008-Feb-28 09:14 UTC
[Secure-testing-commits] r8239 - data/CVE
Author: joeyh
Date: 2008-02-28 09:14:12 +0000 (Thu, 28 Feb 2008)
New Revision: 8239
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
==================================================================---
data/CVE/list 2008-02-27 21:14:13 UTC (rev 8238)
+++ data/CVE/list 2008-02-28 09:14:12 UTC (rev 8239)
@@ -1,4 +1,110 @@
-CVE-2008-0984 [buffer overflow in mp4 demuxer of vlc]
+CVE-2008-1036
+ RESERVED
+CVE-2008-1035
+ RESERVED
+CVE-2008-1034
+ RESERVED
+CVE-2008-1033
+ RESERVED
+CVE-2008-1032
+ RESERVED
+CVE-2008-1031
+ RESERVED
+CVE-2008-1030
+ RESERVED
+CVE-2008-1029
+ RESERVED
+CVE-2008-1028
+ RESERVED
+CVE-2008-1027
+ RESERVED
+CVE-2008-1026
+ RESERVED
+CVE-2008-1025
+ RESERVED
+CVE-2008-1024
+ RESERVED
+CVE-2008-1023
+ RESERVED
+CVE-2008-1022
+ RESERVED
+CVE-2008-1021
+ RESERVED
+CVE-2008-1020
+ RESERVED
+CVE-2008-1019
+ RESERVED
+CVE-2008-1018
+ RESERVED
+CVE-2008-1017
+ RESERVED
+CVE-2008-1016
+ RESERVED
+CVE-2008-1015
+ RESERVED
+CVE-2008-1014
+ RESERVED
+CVE-2008-1013
+ RESERVED
+CVE-2008-1012
+ RESERVED
+CVE-2008-1011
+ RESERVED
+CVE-2008-1010
+ RESERVED
+CVE-2008-1009
+ RESERVED
+CVE-2008-1008
+ RESERVED
+CVE-2008-1007
+ RESERVED
+CVE-2008-1006
+ RESERVED
+CVE-2008-1005
+ RESERVED
+CVE-2008-1004
+ RESERVED
+CVE-2008-1003
+ RESERVED
+CVE-2008-1002
+ RESERVED
+CVE-2008-1001
+ RESERVED
+CVE-2008-1000
+ RESERVED
+CVE-2008-0999
+ RESERVED
+CVE-2008-0998
+ RESERVED
+CVE-2008-0997
+ RESERVED
+CVE-2008-0996
+ RESERVED
+CVE-2008-0995
+ RESERVED
+CVE-2008-0994
+ RESERVED
+CVE-2008-0993
+ RESERVED
+CVE-2008-0992
+ RESERVED
+CVE-2008-0991
+ RESERVED
+CVE-2008-0990
+ RESERVED
+CVE-2008-0989
+ RESERVED
+CVE-2008-0988
+ RESERVED
+CVE-2008-0987
+ RESERVED
+CVE-2008-0986
+ RESERVED
+CVE-2008-0985
+ RESERVED
+CVE-2006-7232 (sql_select.cc in MySQL 5.0.x before 5.0.32 and 5.1.x before
5.1.14 ...)
+ TODO: check
+CVE-2008-0984 (The MP4 demuxer (mp4.c) for VLC media player 0.8.6d and earlier
allows ...)
- vlc <unfixed> (medium; bug #467652)
CVE-2008-6426
REJECTED
@@ -352,7 +458,7 @@
NOT-FOR-US: PHPizabi
CVE-2008-0804 (PHP remote file inclusion vulnerability in usrgetform.html in
Thecus ...)
NOT-FOR-US: Thecus N5200Pro NAS Server
-CVE-2008-0983 [lighttpd remote DoS]
+CVE-2008-0983 (lighttpd 1.4.18, and possibly other versions before 1.5.0, does
not ...)
- lighttpd 1.4.18-2 (medium; bug #466663)
CVE-2008-0883 [tmp race]
RESERVED
@@ -836,7 +942,7 @@
- iceweasel 2.0.0.12-1
- xulrunner 1.8.1.12-1
- iceape 1.1.8-1
-CVE-2008-0591 (Mozilla Firefox before 2.0.0.12 and Thunderbird before 2.0.0.12
allows ...)
+CVE-2008-0591 (Mozilla Firefox before 2.0.0.12 and Thunderbird before 2.0.0.12
does ...)
{DSA-1506-1 DSA-1489-1 DSA-1485-1 DSA-1484-1}
- iceweasel 2.0.0.12-1
- xulrunner 1.8.1.12-1
@@ -11820,7 +11926,8 @@
NOT-FOR-US: MSIE6
CVE-2007-3091 (Race condition in Microsoft Internet Explorer 6 and 7 allows
remote ...)
NOT-FOR-US: Microsoft Internet Explorer
-CVE-2007-3090 (Mozilla Firefox does not properly manage a delay timer used in
...)
+CVE-2007-3090
+ REJECTED
NOTE: This is a dupe of CVE-2008-0519, since 0519 is more widely used, marking
this as a dupe
CVE-2007-3089 (Mozilla Firefox before 2.0.0.5 does not prevent use of
document.write ...)
{DSA-1339-1 DSA-1338-1 DSA-1337-1 DTSA-45-1 DTSA-47-1 DTSA-51-1}
@@ -40919,7 +41026,7 @@
CVE-2005-2820 (Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4
allows ...)
{DSA-820-1}
- courier 0.47-9 (bug #327181; medium)
-CVE-2005-2819 (Unknown vulnerability in DownFile 1.3 allows remote attackers to
...)
+CVE-2005-2819 (DownFile 1.3 allows remote attackers to gain administrator
privileges ...)
NOT-FOR-US: DownFile
CVE-2005-2818 (Cross-site scripting (XSS) vulnerability in DownFile 1.3 allows
remote ...)
NOT-FOR-US: DownFile
@@ -67226,7 +67333,7 @@
NOT-FOR-US: Data pre-dating the Security Tracker
CVE-2000-0719 (VariCAD 7.0 is installed with world-writeable files, which
allows ...)
NOT-FOR-US: Data pre-dating the Security Tracker
-CVE-2000-0715 (DiskCheck script diskcheck.pl in Red Hat Linux allows local
users to ...)
+CVE-2000-0715 (DiskCheck script diskcheck.pl in Red Hat Linux 6.2 allows local
users to ...)
NOT-FOR-US: Data pre-dating the Security Tracker
CVE-2000-0714 (umb-scheme 3.2-11 for Red Hat Linux is installed with
world-writeable ...)
NOT-FOR-US: Data pre-dating the Security Tracker