gilbert-guest at alioth.debian.org
2009-Mar-07 19:53 UTC
[Secure-testing-commits] r11352 - data/CVE
Author: gilbert-guest Date: 2009-03-07 19:53:25 +0000 (Sat, 07 Mar 2009) New Revision: 11352 Modified: data/CVE/list Log: my mistake, the reason 2009-0542/3 were showing up incorrectly is because they were incorrectly being tracked in terms of binary packages. i''ve changed tracking to the source package, proftpd-dfsg. Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-03-07 19:49:34 UTC (rev 11351) +++ data/CVE/list 2009-03-07 19:53:25 UTC (rev 11352) @@ -1193,20 +1193,14 @@ - python-crypto <unfixed> (bug #516660) CVE-2009-0543 (ProFTPD Server 1.3.1, with NLS support enabled, allows remote ...) {DSA-1730-1 DSA-1727-1} - - proftpd 1.3.2-1 (medium; bug #516388) + - proftpd-dfsg 1.3.2-1 (medium; bug #516388) [etch] - proftpd <not-affected> (etch version not affected) [lenny] - proftpd 1.3.1-17lenny2 - - proftpd-basic 1.3.2-1 (medium; bug #516388) - [etch] - proftpd-basic <not-affected> (etch version not affected) - [lenny] - proftpd-basic 1.3.1-17lenny2 CVE-2009-0542 (SQL injection vulnerability in ProFTPD Server 1.3.1 through 1.3.2rc2 ...) {DSA-1730-1 DSA-1727-1} - - proftpd 1.3.2-1 (medium; bug #516388) + - proftpd-dfsg 1.3.2-1 (medium; bug #516388) [etch] - proftpd <not-affected> (etch version not affected) [lenny] - proftpd 1.3.1-17lenny2 - - proftpd-basic 1.3.2-1 (medium; bug #516388) - [etch] - proftpd-basic <not-affected> (etch version not affected) - [lenny] - proftpd-basic 1.3.1-17lenny2 CVE-2009-0541 (Multiple cross-site scripting (XSS) vulnerabilities in Magento 1.2.0 ...) NOT-FOR-US: Magento CVE-2009-0540 (Cross-site scripting (XSS) vulnerability in Libero 5.3 SP5, and ...)