joeyh at alioth.debian.org
2008-Dec-07 21:14 UTC
[Secure-testing-commits] r10656 - data/CVE
Author: joeyh Date: 2008-12-07 21:14:11 +0000 (Sun, 07 Dec 2008) New Revision: 10656 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-12-07 18:57:04 UTC (rev 10655) +++ data/CVE/list 2008-12-07 21:14:11 UTC (rev 10656) @@ -7088,6 +7088,7 @@ CVE-2008-2380 RESERVED CVE-2008-2379 (Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 ...) + {DSA-1682-1} - squirrelmail 2:1.4.15-4 CVE-2008-2378 (Untrusted search path vulnerability in hfkernel in hf 0.7.3 and 0.8 ...) {DSA-1668-1} @@ -38290,7 +38291,7 @@ CVE-2006-3402 (SQL injection vulnerability in VirtuaStore 2.0 allows remote attackers ...) NOT-FOR-US: VirtuaStore CVE-2006-3401 (Stack-based buffer overflow in Quake 3 Engine as used by Quake 3: ...) - NOT-FOR-US: Quake 3 + NOT-FOR-US: Quake 3 CVE-2006-3400 (Stack-based buffer overflow in the CG_ServerCommand function in Quake ...) NOT-FOR-US: Soldier of Fortune 2 CVE-2006-3399 (Cross-site scripting (XSS) vulnerability in wiki.php in MoniWiki ...) @@ -38468,9 +38469,9 @@ CVE-2006-3326 (Directory traversal vulnerability in QuickZip 3.06.3 allows remote ...) NOT-FOR-US: QuickZip CVE-2006-3325 (client/cl_parse.c in the id3 Quake 3 Engine 1.32c and the Icculus ...) - NOT-FOR-US: Quake 3 + NOT-FOR-US: Quake 3 CVE-2006-3324 (The Automatic Downloading option in the id3 Quake 3 Engine and the ...) - NOT-FOR-US: Quake 3 + NOT-FOR-US: Quake 3 CVE-2006-3323 (PHP remote file inclusion vulnerability in admin/admin.php in MF ...) NOT-FOR-US: MF Piadas CVE-2006-3322 (SQL injection vulnerability in includes/functions_logging.php in ...) @@ -39444,7 +39445,7 @@ CVE-2006-2876 (Cross-site scripting (XSS) vulnerability in cat.php in PHP Pro Publish ...) NOT-FOR-US: PHP Pro Publish CVE-2006-2875 (Stack-based buffer overflow in the CL_ParseDownload function of Quake ...) - NOT-FOR-US: Quake 3 + NOT-FOR-US: Quake 3 CVE-2006-2874 (Unspecified vulnerability in OSADS Alliance Database before 1.4 has ...) NOT-FOR-US: OSADS CVE-2006-2873 (Cross-site scripting (XSS) vulnerability in hava.asp in Enigma Haber ...) @@ -40947,7 +40948,7 @@ {DSA-1058-1} - awstats 6.5-2 (bug #365909; bug #365910; medium) CVE-2006-2236 (Buffer overflow in the Quake 3 Engine, as used by (1) ET 2.60, (2) ...) - NOT-FOR-US: Quake 3 + NOT-FOR-US: Quake 3 CVE-2006-2235 (CodeMunkyX (aka free-php.net) Simple Poll 1.0, when authentication is ...) NOT-FOR-US: Simple Poll CVE-2006-2234 (Multiple cross-site scripting (XSS) vulnerabilities in TyroCMS beta ...) @@ -41303,7 +41304,7 @@ [sarge] - rsync <not-affected> (xattr patch appeared in 2.6.7) [woody] - rsync <not-affected> (xattr patch appeared in 2.6.7) CVE-2006-2082 (Directory traversal vulnerability in Quake 3 engine, as used in ...) - NOT-FOR-US: Quake 3 + NOT-FOR-US: Quake 3 CVE-2006-2081 (Oracle Database Server 10g Release 2 allows local users to execute ...) NOT-FOR-US: Oracle CVE-2006-2080 (SQL injection vulnerability in portfolio_photo_popup.php in Verosky ...)