joeyh at alioth.debian.org
2008-Apr-16 21:14 UTC
[Secure-testing-commits] r8544 - data/CVE
Author: joeyh Date: 2008-04-16 21:14:23 +0000 (Wed, 16 Apr 2008) New Revision: 8544 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-04-16 21:02:35 UTC (rev 8543) +++ data/CVE/list 2008-04-16 21:14:23 UTC (rev 8544) @@ -1,3 +1,103 @@ +CVE-2008-1831 (Multiple unspecified vulnerabilities in the Siebel SimBuilder ...) + TODO: check +CVE-2008-1830 (Unspecified vulnerability in the PeopleSoft HCM ePerformance component ...) + TODO: check +CVE-2008-1829 (Unspecified vulnerability in the PeopleSoft HCM Recruiting component ...) + TODO: check +CVE-2008-1828 (Unspecified vulnerability in the PeopleSoft PeopleTools component in ...) + TODO: check +CVE-2008-1827 (Multiple unspecified vulnerabilities in Oracle E-Business Suite ...) + TODO: check +CVE-2008-1826 (Multiple unspecified vulnerabilities in Oracle E-Business Suite ...) + TODO: check +CVE-2008-1825 (Unspecified vulnerability in the Oracle Portal component in Oracle ...) + TODO: check +CVE-2008-1824 (Unspecified vulnerability in the Oracle Dynamic Monitoring Service ...) + TODO: check +CVE-2008-1823 (Unspecified vulnerability in the Oracle Jinitiator component in Oracle ...) + TODO: check +CVE-2008-1822 (Unspecified vulnerability in the Oracle Application Express component ...) + TODO: check +CVE-2008-1821 (Unspecified vulnerability in the Advanced Queuing component in Oracle ...) + TODO: check +CVE-2008-1820 (Unspecified vulnerability in the Data Pump component in Oracle ...) + TODO: check +CVE-2008-1819 (Unspecified vulnerability in the Oracle Net Services component in ...) + TODO: check +CVE-2008-1818 (Unspecified vulnerability in the Authentication component in Oracle ...) + TODO: check +CVE-2008-1817 (Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5 FIPS+, ...) + TODO: check +CVE-2008-1816 (Multiple unspecified vulnerabilities in Oracle Database 10.1.0.5 and ...) + TODO: check +CVE-2008-1815 (Unspecified vulnerability in the Change Data Capture component in ...) + TODO: check +CVE-2008-1814 (Unspecified vulnerability in the Oracle Secure Enterprise Search or ...) + TODO: check +CVE-2008-1813 (Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5 FIPS+, ...) + TODO: check +CVE-2008-1812 (Unspecified vulnerability in the Oracle Enterprise Manager component ...) + TODO: check +CVE-2008-1811 (Unspecified vulnerability in the Oracle Application Express component ...) + TODO: check +CVE-2008-1810 + RESERVED +CVE-2008-1809 + RESERVED +CVE-2008-1808 + RESERVED +CVE-2008-1807 + RESERVED +CVE-2008-1806 + RESERVED +CVE-2008-1805 + RESERVED +CVE-2008-1804 + RESERVED +CVE-2008-1803 + RESERVED +CVE-2008-1802 + RESERVED +CVE-2008-1801 + RESERVED +CVE-2008-1800 (Multiple cross-site scripting (XSS) vulnerabilities in index.php in ...) + TODO: check +CVE-2008-1799 (Directory traversal vulnerability in thumbnails.php in sabros.us 1.75 ...) + TODO: check +CVE-2008-1798 (Directory traversal vulnerability in forum/kietu/libs/calendrier.php ...) + TODO: check +CVE-2008-1797 (Unspecified vulnerability in Secure Computing Webwasher 5.30 before ...) + TODO: check +CVE-2008-1796 (Comix 3.6.4 creates temporary directories with predictable names, ...) + TODO: check +CVE-2008-1795 (Multiple cross-site scripting (XSS) vulnerabilities in Blackboard ...) + TODO: check +CVE-2008-1794 (Multiple cross-site scripting (XSS) vulnerabilities in the Webform ...) + TODO: check +CVE-2008-1793 (Multiple cross-site scripting (XSS) vulnerabilities in view.cgi in ...) + TODO: check +CVE-2008-1792 (Cross-site scripting (XSS) vulnerability in the insertion filter in ...) + TODO: check +CVE-2008-1791 (SQL injection vulnerability in ladder.php in My Gaming Ladder 7.5 and ...) + TODO: check +CVE-2008-1790 (Unrestricted file upload vulnerability in iScripts SocialWare allows ...) + TODO: check +CVE-2008-1789 (SQL injection vulnerability in forum.php in Prozilla Forum allows ...) + TODO: check +CVE-2008-1788 (SQL injection vulnerability in directory.php in Prozilla Entertainers ...) + TODO: check +CVE-2008-1787 (Multiple cross-site scripting (XSS) vulnerabilities in index.php in ...) + TODO: check +CVE-2008-1786 + RESERVED +CVE-2008-1785 (delete.php in Prozilla Top 100 1.2 allows remote authenticated users ...) + TODO: check +CVE-2008-1784 (Prozilla Topsites 1.0 allows remote attackers to perform ...) + TODO: check +CVE-2008-1783 (Prozilla Reviews 1.0 allows remote attackers to delete arbitrary users ...) + TODO: check +CVE-2008-1782 (phpdemo/viewsource.php in Advanced Software Engineering ChartDirector ...) + TODO: check CVE-2008-1837 [clamav 0.93 rar issue] - clamav <not-affected> (Debian doesn''t include libunrar since it''s non-free) CVE-2008-1835 [clamav 0.93 rar issue] @@ -4,9 +104,9 @@ - clamav <not-affected> (Debian doesn''t include libunrar since it''s non-free) CVE-2008-1832 [secilia insecure tmp file usage] - cecilia <unfixed> (low; bug #476321) - [etch] - cecilica <no-dsa> (Minor issue) + [etch] - cecilica <no-dsa> (Minor issue) CVE-2008-1781 - RESERVED + REJECTED CVE-2008-1780 (Unspecified vulnerability in the labeled networking functionality in ...) NOT-FOR-US: Solaris CVE-2008-1779 (Sun Solaris 8, 9, and 10 allows "remote privileged" users to cause a ...) @@ -227,9 +327,9 @@ NOT-FOR-US: PHP-Nuke Platinum CVE-2008-1679 [initial fix for CVE-2007-4965 was incomplete] RESERVED - - python2.4 <unfixed> - - python2.5 <unfixed> - NOTE: maintainer has been notified + - python2.4 <unfixed> + - python2.5 <unfixed> + NOTE: maintainer has been notified CVE-2008-1678 RESERVED CVE-2008-1677 @@ -539,7 +639,7 @@ {DSA-1531-2} - policyd-weight 0.1.14.17-1 (low) NOTE: http://www.mail-archive.com/policyd-weight-list%40ek-muc.de/msg00798.html -CVE-2008-1569 (policyd-weight before 0.1.14 beta-16 allows local users to modify or ...) +CVE-2008-1569 (policyd-weight 0.1.14 beta-16 and earlier allows local users to modify ...) {DSA-1531-2} - policyd-weight 0.1.14.17-1 (low) CVE-2008-1568 (comix 3.6.4 allows attackers to execute arbitrary commands via a ...) @@ -867,7 +967,7 @@ CVE-2008-1387 [clamav 0.93 unarj issue] RESERVED - clamav <unfixed> - [etch] - clamav <not-affected> (Vulnerable code not present) + [etch] - clamav <not-affected> (Vulnerable code not present) CVE-2008-1386 RESERVED CVE-2008-1385 @@ -1578,7 +1678,7 @@ CVE-2008-1101 (Buffer overflow in kvdocve.dll in the KeyView document viewing engine ...) NOT-FOR-US: KeyView CVE-2008-1100 (Buffer overflow in the cli_scanpe function in libclamav ...) - - clamav <unfixed> + - clamav <unfixed> CVE-2008-1099 (_macro_Getval in wikimacro.py in MoinMoin 1.5.8 and earlier does not ...) {DSA-1514-1} - moin 1.5.8-5.1 @@ -3361,7 +3461,7 @@ RESERVED CVE-2008-0314 [clamav spin overflow] RESERVED - - clamav <unfixed> + - clamav <unfixed> CVE-2008-0313 (The ActiveDataInfo.LaunchProcess method in the ...) NOT-FOR-US: Symantec Norton products CVE-2008-0312 (Stack-based buffer overflow in the AutoFix Support Tool ActiveX ...)