Author: joeyh Date: 2010-03-05 09:14:48 +0000 (Fri, 05 Mar 2010) New Revision: 14193 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-03-05 03:16:42 UTC (rev 14192) +++ data/CVE/list 2010-03-05 09:14:48 UTC (rev 14193) @@ -2706,8 +2706,8 @@ RESERVED CVE-2010-0055 [xar Signature verification bypass] RESERVED - - xar <unfixed> (bug #572556) - [lenny] - xar <no-dsa> (Minor issue) + - xar <unfixed> (bug #572556) + [lenny] - xar <no-dsa> (Minor issue) CVE-2010-0054 RESERVED CVE-2010-0053 @@ -36780,7 +36780,6 @@ CVE-2007-4967 (Online Armor Personal Firewall 2.0.1.215 does not properly validate ...) NOT-FOR-US: Online Armor Personal Firewall CVE-2007-4966 (SQL injection vulnerability in www/people/editprofile.php in GForge ...) - {DTSA-57-1} NOTE: Duplicate of CVE-2007-3913 CVE-2007-4965 (Multiple integer overflows in the imageop module in Python 2.5.1 and ...) {DSA-1620-1 DSA-1551-1} @@ -37063,7 +37062,6 @@ CVE-2007-4842 (Directory traversal vulnerability in Enriva Development Magellan ...) NOT-FOR-US: Magellan Explorer CVE-2007-4841 (Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and ...) - {DTSA-69-1} - iceweasel <not-affected> (windows only issue) - iceape <not-affected> (windows only issue) - xulrunner <not-affected> (windows only issue) @@ -62559,7 +62557,7 @@ CVE-2000-1239 (The HTTP interface of Tivoli Lightweight Client Framework (LCF) in IBM ...) NOT-FOR-US: Tivoli CVE-2006-1236 (Buffer overflow in the SetUp function in socket/request.c in CrossFire ...) - {DSA-1010-1 DSA-1009-1} + {DSA-1009-1} - crossfire 1.9.0-2 (medium) CVE-2006-1235 (Directory traversal vulnerability in admin/deleteuser.php in HitHost ...) NOT-FOR-US: HitHost @@ -77648,6 +77646,7 @@ {DSA-726-1} - oops 1.5.23.cvs-2.2 (bug #307360; high) CVE-2005-1120 (Multiple cross-site scripting (XSS) vulnerabilities in IlohaMail ...) + {DSA-1010-1} - ilohamail 0.8.14-0rc3sarge1 (bug #304525; medium) CVE-2005-1119 (Sudo VISudo 1.6.8 and earlier allows local users to corrupt arbitrary ...) - sudo <unfixed> (bug #283161; unimportant)