Author: joeyh Date: 2009-12-04 21:14:15 +0000 (Fri, 04 Dec 2009) New Revision: 13454 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-12-04 21:03:16 UTC (rev 13453) +++ data/CVE/list 2009-12-04 21:14:15 UTC (rev 13454) @@ -1,3 +1,47 @@ +CVE-2009-4197 (rpwizPppoe.htm in Huawei MT882 V100R002B020 ARG-T running firmware ...) + TODO: check +CVE-2009-4196 (Multiple cross-site scripting (XSS) vulnerabilities in multiple ...) + TODO: check +CVE-2009-4195 (Buffer overflow in Adobe Illustrator CS4 13.0.0 and 14.0.0 allows ...) + TODO: check +CVE-2009-4194 (Directory traversal vulnerability in Golden FTP Server 4.30 Free and ...) + TODO: check +CVE-2009-4193 (Merkaartor 0.14 allows local users to append data to arbitrary files ...) + TODO: check +CVE-2009-4192 (Directory traversal vulnerability in dialog/file_manager.php in ...) + TODO: check +CVE-2009-4191 (Unspecified vulnerability in the kernel in Sun Solaris 10 and ...) + TODO: check +CVE-2009-4190 (Unspecified vulnerability in the kernel in Sun OpenSolaris 2009.06 ...) + TODO: check +CVE-2009-4189 (HP Operations Manager has a default password of OvW*busr1 for the ...) + TODO: check +CVE-2009-4188 (HP Operations Dashboard has a default password of j2deployer for the ...) + TODO: check +CVE-2009-4187 (Multiple cross-site scripting (XSS) vulnerabilities in the Gateway ...) + TODO: check +CVE-2009-4186 (Stack consumption vulnerability in Apple Safari 4.0.3 on Windows ...) + TODO: check +CVE-2009-4185 + RESERVED +CVE-2009-4184 + RESERVED +CVE-2009-4183 + RESERVED +CVE-2009-4182 + RESERVED +CVE-2009-4181 + RESERVED +CVE-2009-4180 + RESERVED +CVE-2009-4179 + RESERVED +CVE-2009-4178 + RESERVED +CVE-2009-4177 + RESERVED +CVE-2009-4176 + RESERVED CVE-2009-4175 (CutePHP CuteNews 1.4.6 and UTF-8 CuteNews before 8b allows remote ...) NOT-FOR-US: CuteNews CVE-2009-4174 (The editnews module in CutePHP CuteNews 1.4.6 and UTF-8 CuteNews ...) @@ -4849,8 +4893,8 @@ - cyrus-imapd-2.2 2.2.13-15 (medium) - kolab-cyrus-imapd 2.2.13-5.1 (medium; bug #547712) - dovecot 1:1.2.1-1 (medium; bug #546656) -CVE-2009-2631 - RESERVED +CVE-2009-2631 (Multiple clientless SSL VPN products that run in web browsers, ...) + TODO: check CVE-2009-2630 RESERVED CVE-2009-2629 (Buffer underflow in src/http/ngx_http_parse.c in nginx 0.1.0 through ...) @@ -7741,10 +7785,10 @@ RESERVED CVE-2009-1568 RESERVED -CVE-2009-1567 - RESERVED -CVE-2009-1566 - RESERVED +CVE-2009-1567 (Multiple stack-based buffer overflows in the Lateral Arts Photobox ...) + TODO: check +CVE-2009-1566 (Integer overflow in Roxio Easy Media Creator 9.0.136, and Roxio ...) + TODO: check CVE-2009-1565 RESERVED CVE-2009-1564 @@ -10170,8 +10214,8 @@ NOT-FOR-US: IBM WebSphere CVE-2009-0896 (Buffer overflow in the queue manager in IBM WebSphere MQ 6.x before ...) NOT-FOR-US: IBM WebSphere -CVE-2009-0895 - RESERVED +CVE-2009-0895 (Integer overflow in Novell eDirectory 8.7.3.x before 8.7.3.10 ftf2 and ...) + TODO: check CVE-2009-0894 (Heap-based buffer overflow in the decoder_create function in the ...) - xvidcore <itp> (bug #531040) CVE-2009-0893 (Multiple heap-based buffer overflows in xvidcore/src/decoder.c in the ...) @@ -13610,6 +13654,7 @@ {DSA-1700-1} - lasso 2.2.1-2 (bug #511262) CVE-2009-0049 (Belgian eID middleware (eidlib) 2.6.0 and earlier does not properly ...) + {DSA-1946-1} - belpic 2.6.0-6 (bug #511261) CVE-2009-0048 (OpenEvidence 1.0.6 and earlier does not properly check the return ...) NOT-FOR-US: OpenEvidence