Author: gilbert-guest Date: 2010-04-03 00:14:26 +0000 (Sat, 03 Apr 2010) New Revision: 14385 Modified: data/CVE/list data/DSA/list Log: DSA-2026-1; drbd issue got a cve id Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-04-02 21:14:42 UTC (rev 14384) +++ data/CVE/list 2010-04-03 00:14:26 UTC (rev 14385) @@ -669,13 +669,12 @@ {DSA-2020-1} - ikiwiki 3.20100312 (low) [lenny] - ikwiki 2.53.5 -CVE-2010-XXXX [linux-2.6 drbd connector issue] +CVE-2010-0747 [linux-2.6 drbd connector issue] - linux-2.6 <not-affected> (drbd introduced in 2.6.33, which is not yet in unstable) NOTE: checked 2.6.33-1~experimental.3, and the fix is already applied TODO: fix tracking once kernel >= 2.6.33 enters unstable - drbd8 2:8.3.7-1 [lenny] - drbd8 2:8.0.14-2+lenny1 - NOTE: DSA-2015-1 NOTE: CVE requested at http://www.openwall.com/lists/oss-security/2010/03/11/9 CVE-2009-4718 (SQL injection vulnerability in visitorduration.php in Gonafish ...) NOT-FOR-US: Gonafish WebStatCaffe @@ -1359,8 +1358,6 @@ RESERVED CVE-2010-0748 RESERVED -CVE-2010-0747 - RESERVED CVE-2010-0746 RESERVED CVE-2010-0745 [dovecot DoS] Modified: data/DSA/list ==================================================================--- data/DSA/list 2010-04-02 21:14:42 UTC (rev 14384) +++ data/DSA/list 2010-04-03 00:14:26 UTC (rev 14385) @@ -1,3 +1,6 @@ +[02 Apr 2010] DSA-2026-1 netpbm-free - buffer overflow + {CVE-2009-4274} + [lenny] - netpbm-free 2:10.0-12+lenny1 [31 Mar 2010] DSA-2025-1 icedove - several vulnerabilities {CVE-2009-2404 CVE-2009-2408 CVE-2009-2463 CVE-2009-3072 CVE-2009-3075 CVE-2010-0163} [lenny] - icedove 2.0.0.24-0lenny1 @@ -26,6 +29,7 @@ [lenny] - pulseaudio 0.9.10-3+lenny2 {CVE-2009-1299} [15 Mar 2010] DSA-2015-1 drbd8 linux-modules-extra-2.6 - privilege escalation + {CVE-2010-0747} [lenny] - drbd8 2:8.0.14-2+lenny1 [lenny] - linux-modules-extra-2.6 2.6.26-6+lenny3 [13 Mar 2010] DSA-2016-1 drupal6 - several vulnerabilities