joeyh at alioth.debian.org
2008-Oct-17 09:14 UTC
[Secure-testing-commits] r10105 - data/CVE
Author: joeyh
Date: 2008-10-17 09:14:11 +0000 (Fri, 17 Oct 2008)
New Revision: 10105
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
==================================================================---
data/CVE/list 2008-10-17 00:27:22 UTC (rev 10104)
+++ data/CVE/list 2008-10-17 09:14:11 UTC (rev 10105)
@@ -284,6 +284,7 @@
CVE-2008-4446 (Cross-site scripting (XSS) vulnerability in Nucleus EUC-JP 3.31
SP1 ...)
NOT-FOR-US: Nucleus EUC-JP
CVE-2008-4445 (The sctp_auth_ep_set_hmacs function in net/sctp/auth.c in the
Stream ...)
+ {DSA-1655-1}
- linux-2.6 2.6.26-5
- linux-2.6.24 <unfixed>
[etch] - linux-2.6 <not-affected> (vulnerable code not present)
@@ -1090,6 +1091,7 @@
CVE-2008-4114 (srv.sys in Microsoft Windows Vista SP1 allows remote attackers
to ...)
NOT-FOR-US: Microsoft Windows
CVE-2008-4113 (The sctp_getsockopt_hmac_ident function in net/sctp/socket.c in
the ...)
+ {DSA-1655-1}
- linux-2.6 2.6.26-5
[etch] - linux-2.6 <not-affected> (Vulnerable code not present)
- linux-2.6.24 <unfixed>
@@ -1800,6 +1802,7 @@
- linux-2.6.24 <not-affected> (Fedora-specific patch)
CVE-2008-3831
RESERVED
+ {DSA-1655-1}
CVE-2008-3830 (Condor before 7.0.5 does not properly handle when the
configuration ...)
- condor <itp> (bug #233482)
CVE-2008-3829 (Unspecified vulnerability in the condor_ schedd daemon in Condor
...)
@@ -2624,7 +2627,7 @@
- linux-2.6.24 2.6.24-6~etchnhalf.5
[etch] - linux-2.6 <not-affected>
CVE-2008-3525 (The sbni_ioctl function in drivers/net/wan/sbni.c in the wan
subsystem ...)
- {DSA-1653-1}
+ {DSA-1655-1 DSA-1653-1}
- linux-2.6 2.6.26-7
- linux-2.6.24 <unfixed>
CVE-2008-3524 (rc.sysinit in initscripts before 8.76.3-1 in Fedora 9 allows
local ...)
@@ -7265,7 +7268,7 @@
[sarge] - otrs <not-affected> (Vulnerable code not present)
NOTE: http://packages.qa.debian.org/o/otrs2/news/20080320T211729Z.html
CVE-2008-1514 (arch/s390/kernel/ptrace.c in Linux kernel 2.6.9, and other
versions ...)
- {DSA-1653-1}
+ {DSA-1655-1 DSA-1653-1}
- linux-2.6 2.6.26-8
NOTE: s390 specific issue, counterpart for x86 not reproducible with 2.6.24
here
CVE-2008-1513 (SQL injection vulnerability in index.php in Danneo CMS 0.5.1 and
...)