jmm-guest at alioth.debian.org
2008-May-01 21:08 UTC
[Secure-testing-commits] r8662 - data/CVE
Author: jmm-guest Date: 2008-05-01 21:08:33 +0000 (Thu, 01 May 2008) New Revision: 8662 Modified: data/CVE/list Log: fixups: - each issue should have the status of unstable (which is recorded in CVE/list), so I''ve added a few linux-2.6 <unfixed> (We can figure out the fixed versions later on) - there''s no need for [etch] lines for issues fixed in DSAs, this information is cross-referenced from DSA/list and the entries are added automatically by a cron job. I''ve removed the [etch] lines and added an entry to DSA/list Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-05-01 20:59:51 UTC (rev 8661) +++ data/CVE/list 2008-05-01 21:08:33 UTC (rev 8662) @@ -1309,7 +1309,6 @@ RESERVED {DSA-1565-1} - linux-2.6 <unfixed> - [etch] - linux-2.6 2.6.18.dfsg.1-18etch3 CVE-2008-1374 (Integer overflow in pdftops filter in CUPS in Red Hat Enterprise Linux ...) - cupsys <not-affected> (Redhat-specific incomplete patch, upstream patch is complete) CVE-2008-1373 (Buffer overflow in the gif_read_lzw in CUPS 1.3.6 allows remote ...) @@ -1506,7 +1505,6 @@ CVE-2008-1294 [setrlimit(RLIMIT_CPUINFO) with zero value doesn''t inherit properly across children] RESERVED {DSA-1565-1} - [etch] - linux-2.6 2.6.18.dfsg.1-18etch3 (bug #419706) CVE-2008-1318 (Unspecified vulnerability in MediaWiki 1.11 before 1.11.2 allows ...) - mediawiki 1:1.11.2-1 [etch] - mediawiki <not-affected> (Versions prior to 1.11 do not include callback feature) @@ -3567,7 +3565,7 @@ - ghostscript 8.61.dfsg.1-1.1 (medium; bug #468190) CVE-2007-6694 (The chrp_show_cpuinfo function (chrp/setup.c) in Linux kernel 2.4.21 ...) {DSA-1503-2 DSA-1504-1 DSA-1503-1 DSA-1565-1} - [etch] - linux-2.6 2.6.18.dfsg.1-18etch3 + - linux-2.6 <unfixed> CVE-2008-XXXX [exempi buffer overflow in GIF ReadHeader() function] - exempi 1.99.7-1 (bug #454297) CVE-2008-0544 (Heap-based buffer overflow in the IMG_LoadLBM_RW function in IMG_lbm.c ...) @@ -5622,8 +5620,6 @@ CVE-2008-0007 (Linux kernel before 2.6.22.17, when using certain drivers that ...) {DSA-1503-2 DSA-1504-1 DSA-1503-1 DSA-1565-1} - linux-2.6 2.6.24-4 - [etch] - linux-2.6 2.6.18.dfsg.1-18etch3 - {DSA-1565-1} CVE-2008-0006 (Buffer overflow in (1) X.Org Xserver before 1.4.1, and (2) the libfont ...) {DSA-1466-2 DTSA-110-1} - xorg-server 2:1.4.1~git20080105-2