Author: nion Date: 2008-09-06 10:59:26 +0000 (Sat, 06 Sep 2008) New Revision: 9770 Modified: data/CVE/list Log: CVE-2008-3791 fixed in 0.1.9-2, CVE-2008-3904 got an own bug Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-09-06 10:20:37 UTC (rev 9769) +++ data/CVE/list 2008-09-06 10:59:26 UTC (rev 9770) @@ -17,7 +17,7 @@ CVE-2008-3932 [DoS via a crafted NCP packet] - wireshark <unfixed> (low; bug #497878) CVE-2008-3904 [gpicview code execution via crafted file name] - - gpicview <unfixed> (low; bug #495968) + - gpicview <unfixed> (low; bug #498022) CVE-2008-3909 [CSRF in python-django] - python-django 1.0-1 NOTE: http://www.djangoproject.com/weblog/2008/sep/02/security/ @@ -448,7 +448,7 @@ - r-base-core-ra 1.1.1-2 (low; bug #496363) [lenny] - r-base 2.7.1-1+lenny1 CVE-2008-3791 (src/main-win.c in GPicView 0.1.9 in Lightweight X11 Desktop ...) - - gpicview <unfixed> (low; bug #495968) + - gpicview 0.1.9-2 (low; bug #495968) NOTE: http://sourceforge.net/tracker/index.php?func=detail&aid=2019481&group_id=180858&atid=894869 CVE-2008-XXXX [Overwrite symlink without check] - gpicview <unfixed> (unimportant; bug #495968)