Author: gilbert-guest Date: 2010-03-12 04:16:02 +0000 (Fri, 12 Mar 2010) New Revision: 14254 Modified: data/CVE/list Log: fix samba issue CVE number; also its now fixed in unstable Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-03-12 00:51:33 UTC (rev 14253) +++ data/CVE/list 2010-03-12 04:16:02 UTC (rev 14254) @@ -116,7 +116,8 @@ CVE-2010-0928 (OpenSSL 0.9.8i on the Gaisler Research LEON3 SoC on the Xilinx ...) TODO: check CVE-2010-0926 (The default configuration of smbd in Samba before 3.3.11, 3.4.x before ...) - TODO: check + - samba 2:3.5.1~dfsg-1 (low; bug #568493; bug #572953) + [lenny] - samba <no-dsa> (Minor issue, patch breaks existing behaviour, can be fixed through configuration modifications) CVE-2010-XXXX [dovecot DoS] - dovecot 1:1.2.11-1 (low) [lenny] - dovecot <not-affected> (Vulnerable code not present) @@ -1933,11 +1934,8 @@ CVE-2010-0297 (Buffer overflow in the usb_host_handle_control function in the USB ...) - qemu-kvm 0.11.1+dfsg-1 - kvm <removed> -CVE-2010-0296 [samba directory traversal] +CVE-2010-0296 RESERVED - - samba <unfixed> (low; bug #568493; bug #572953) - [lenny] - samba <no-dsa> (Minor issue, patch breaks existing behaviour, can be fixed through configuration modifications) - NOTE: supposedly fixed upstream in 3.5.0 CVE-2010-0295 (lighttpd before 1.4.26, and 1.5.x, allocates a buffer for each read ...) {DSA-1987-1} - lighttpd 1.4.26-1 (medium)