Author: jmm-guest Date: 2009-10-04 18:47:41 +0000 (Sun, 04 Oct 2009) New Revision: 12934 Modified: data/CVE/list Log: kernel fixes new samba issues Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-10-04 15:40:00 UTC (rev 12933) +++ data/CVE/list 2009-10-04 18:47:41 UTC (rev 12934) @@ -1780,6 +1780,7 @@ RESERVED CVE-2009-2948 RESERVED + - samba 2:3.4.2-1 CVE-2009-2947 (Cross-site scripting (XSS) vulnerability in Xapian Omega before 1.0.16 ...) {DSA-1882-1} - xapian-omega 1.0.15-2 @@ -1961,6 +1962,7 @@ RESERVED CVE-2009-2906 RESERVED + - samba 2:3.4.2-1 CVE-2009-2905 (Heap-based buffer overflow in textbox.c in newt 0.51.5, 0.51.6, and ...) {DSA-1894-1} - newt <unfixed> (medium; bug #548198) @@ -2135,7 +2137,7 @@ - linux-2.6.24 <removed> [lenny] - linux-2.6 2.6.26-19 (low) CVE-2009-2844 (cfg80211 in net/wireless/scan.c in the Linux kernel 2.6.30-rc1 and ...) - - linux-2.6 <unfixed> (medium) + - linux-2.6 2.6.31-1 (medium) [etch] - linux-2.6 <not-affected> (vulnerability introduced in 2.6.30) [lenny] - linux-2.6 <not-affected> (vulnerability introduced in 2.6.30) - linux-2.6.24 <not-affected> (vulnerability introduced in 2.6.30) @@ -2200,7 +2202,7 @@ CVE-2009-2814 (Cross-site scripting (XSS) vulnerability in the Wiki Server in Apple ...) NOT-FOR-US: Apple Mac OS X CVE-2009-2813 (The SMB (aka Samba) subsystem in Apple Mac OS X 10.5.8, when Windows ...) - - samba <unfixed> (unknown) + - samba 2:3.4.2-1 TODO: check NOTE: details are unknown CVE-2009-2812 (Launch Services in Apple Mac OS X 10.5.8 does not properly recognize ...) @@ -2768,7 +2770,7 @@ CVE-2009-2696 RESERVED CVE-2009-2695 (The Linux kernel before 2.6.31-rc7 does not properly prevent mmap ...) - - linux-2.6 <unfixed> (medium) + - linux-2.6 2.6.31-1 (medium) - linux-2.6.24 <removed> (medium) CVE-2009-2694 (The msn_slplink_process_msg function in ...) {DSA-1870-1} @@ -2782,7 +2784,7 @@ - linux-2.6 2.6.30-6 (high; bug #541403) - linux-2.6.24 <removed> CVE-2009-2691 (The mm_for_maps function in fs/proc/base.c in the Linux kernel ...) - - linux-2.6 <unfixed> (low) + - linux-2.6 2.6.31-1 (low) - linux-2.6.24 <removed> CVE-2009-2690 (The encoder in Sun Java SE 6 before Update 15, and OpenJDK, grants ...) - sun-java6 6-15-1