Author: nion Date: 2008-04-28 15:25:46 +0000 (Mon, 28 Apr 2008) New Revision: 8641 Modified: data/CVE/list Log: CVE-2008-0304,CVE-2008-04[12,13,15,16,18] fixed in icedove 2.0.0.12-1 Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-04-28 15:19:57 UTC (rev 8640) +++ data/CVE/list 2008-04-28 15:25:46 UTC (rev 8641) @@ -3510,7 +3510,7 @@ - iceweasel 2.0.0.12-1 - xulrunner 1.8.1.12-1 - iceape 1.1.8-1 - - icedove <unfixed> + - icedove 2.0.0.12-1 CVE-2008-0417 (CRLF injection vulnerability in Mozilla Firefox before 2.0.0.12 allows ...) {DSA-1506-1 DSA-1489-1 DSA-1485-2 DSA-1484-1} - iceweasel 2.0.0.12-1 @@ -3518,12 +3518,13 @@ CVE-2008-0416 (Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox ...) {DSA-1506-1 DSA-1489-1 DSA-1485-2 DSA-1484-1} - iceweasel 2.0.0.12-1 + - icedove 2.0.0.12-1 TODO: check xulrunner and iceape CVE-2008-0415 (Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and ...) {DSA-1506-1 DSA-1489-1 DSA-1485-2 DSA-1484-1} - iceweasel 2.0.0.12-1 - iceape 1.1.8-1 - - icedove <unfixed> + - icedove 2.0.0.12-1 - xulrunner 1.8.1.12-1 CVE-2008-0414 (Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows ...) {DSA-1506-1 DSA-1489-1 DSA-1485-2 DSA-1484-1} @@ -3535,13 +3536,13 @@ - iceweasel 2.0.0.12-1 - xulrunner 1.8.1.12-1 - iceape 1.1.8-1 - - icedove <unfixed> + - icedove 2.0.0.12-1 CVE-2008-0412 (The browser engine in Mozilla Firefox before 2.0.0.12, Thunderbird ...) {DSA-1506-1 DSA-1489-1 DSA-1485-2 DSA-1484-1} - iceweasel 2.0.0.12-1 - xulrunner 1.8.1.12-1 - iceape 1.1.8-1 - - icedove <unfixed> + - icedove 2.0.0.12-1 CVE-2008-0411 (Stack-based buffer overflow in the zseticcspace function in zicc.c in ...) {DSA-1510-1} - ghostscript 8.61.dfsg.1-1.1 (medium; bug #468190) @@ -3782,7 +3783,7 @@ CVE-2008-0305 RESERVED CVE-2008-0304 (Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.12 and ...) - - icedove <unfixed> (medium) + - icedove 2.0.0.12-1 (medium) - iceape 1.1.8-1 (medium) CVE-2008-0303 (The FTP print feature in multiple Canon printers, including ...) NOT-FOR-US: Canon printer firmware