Author: joeyh Date: 2010-04-20 21:14:16 +0000 (Tue, 20 Apr 2010) New Revision: 14537 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2010-04-20 19:20:15 UTC (rev 14536) +++ data/CVE/list 2010-04-20 21:14:16 UTC (rev 14537) @@ -12897,7 +12897,7 @@ - kdelibs <unfixed> (unimportant) - kde4libs <unfixed> (unimportant) - qt4-x11 <undetermined> (unimportant) - NOTE: http://trac.webkit.org/changeset/44010 + NOTE: http://trac.webkit.org/changeset/44010 CVE-2009-1717 (Integer overflow in Terminal in Apple Mac OS X 10.5 before 10.5.7 ...) NOT-FOR-US: Mac OS X CVE-2009-1716 (CFNetwork in Apple Safari before 4.0 on Windows does not properly ...) @@ -12907,7 +12907,7 @@ - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/31890 + NOTE: http://trac.webkit.org/changeset/31890 CVE-2009-1714 (Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in ...) {DSA-1950-1} - webkit 1.1.12-1 (low; bug #535793) @@ -12945,7 +12945,7 @@ - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/35157 + NOTE: http://trac.webkit.org/changeset/35157 CVE-2009-1709 (Use-after-free vulnerability in the garbage-collection implementation ...) {DSA-1866-1} - webkit 0~svn32442-1 @@ -12970,26 +12970,26 @@ - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/42533 + NOTE: http://trac.webkit.org/changeset/42533 CVE-2009-1702 (Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari ...) - webkit 1.1.12-1 (low; bug #535793) - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/42216 + NOTE: http://trac.webkit.org/changeset/42216 CVE-2009-1701 (Use-after-free vulnerability in the JavaScript DOM implementation in ...) - webkit 1.1.12-1 (medium; bug #535793) - kdelibs <not-affected> - kde4libs <undetermined> - qt4-x11 <undetermined> NOTE: invasive patch to backport. - NOTE: http://trac.webkit.org/changeset/40881 + NOTE: http://trac.webkit.org/changeset/40881 CVE-2009-1700 (The XSLT implementation in WebKit in Apple Safari before 4.0, iPhone ...) - webkit 1.1.12-1 (low; bug #535793) - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/38065 + NOTE: http://trac.webkit.org/changeset/38065 CVE-2009-1699 (The XSL stylesheet implementation in WebKit in Apple Safari before ...) {DSA-1988-1} - webkit 1.0.1-4 (medium; bug #535793) @@ -13011,29 +13011,29 @@ - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/41262 + NOTE: http://trac.webkit.org/changeset/41262 CVE-2009-1696 (WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and ...) - webkit 1.1.12-1 (medium; bug #535793) [lenny] - webkit <not-affected> (Vulnerable code not present) - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/39510 - NOTE: http://trac.webkit.org/changeset/39553 + NOTE: http://trac.webkit.org/changeset/39510 + NOTE: http://trac.webkit.org/changeset/39553 CVE-2009-1695 (Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari ...) {DSA-1950-1} - webkit 1.1.12-1 (low; bug #535793) - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/42223 + NOTE: http://trac.webkit.org/changeset/42223 CVE-2009-1694 (WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and ...) {DSA-1950-1} - webkit 1.1.12-1 (low; bug #535793) - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/35935 + NOTE: http://trac.webkit.org/changeset/35935 CVE-2009-1693 (WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and ...) {DSA-1950-1} - webkit 1.1.12-1 (medium; bug #535793) @@ -13073,14 +13073,14 @@ - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/32791 + NOTE: http://trac.webkit.org/changeset/32791 CVE-2009-1688 (Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari ...) - webkit 1.1.12-1 (low; bug #535793) [lenny] - webkit <not-affected> (Vulnerable code not present) - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/32791 + NOTE: http://trac.webkit.org/changeset/32791 CVE-2009-1687 (The JavaScript garbage collector in WebKit in Apple Safari before 4.0, ...) {DSA-1988-1 DSA-1950-1 DSA-1868-1 DSA-1867-1} - webkit 1.1.5-1 (medium; bug #534946) @@ -13095,20 +13095,20 @@ - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/31431 + NOTE: http://trac.webkit.org/changeset/31431 CVE-2009-1685 (Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari ...) - webkit 1.0.1-4 (medium; bug #535793) - kdelibs <not-affected> - kde4libs <unfixed> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/34574 + NOTE: http://trac.webkit.org/changeset/34574 CVE-2009-1684 (Cross-site scripting (XSS) vulnerability in WebKit in Apple Safari ...) {DSA-1950-1} - webkit 1.1.12-1 (low; bug #535793) - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/42365 + NOTE: http://trac.webkit.org/changeset/42365 CVE-2009-1683 (The Telephony component in Apple iPhone OS 1.0 through 2.2.1 and ...) NOT-FOR-US: iPhone CVE-2009-1682 (Apple Safari before 4.0 does not properly check for revoked Extended ...) @@ -13119,7 +13119,7 @@ - kdelibs <not-affected> - kde4libs <not-affected> - qt4-x11 <undetermined> - NOTE: http://trac.webkit.org/changeset/42333 + NOTE: http://trac.webkit.org/changeset/42333 CVE-2009-1680 (Safari in Apple iPhone OS 1.0 through 2.2.1 and iPhone OS for iPod ...) NOT-FOR-US: Safari in Apple iPhone OS CVE-2009-1679 (The Profiles component in Apple iPhone OS 1.0 through 2.2.1 and iPhone ...)