Author: jmm Date: 2011-06-20 07:48:32 +0000 (Mon, 20 Jun 2011) New Revision: 16822 Modified: data/CVE/list Log: merge changes from Helmut Grohne, thanks! Modified: data/CVE/list ==================================================================--- data/CVE/list 2011-06-20 07:40:25 UTC (rev 16821) +++ data/CVE/list 2011-06-20 07:48:32 UTC (rev 16822) @@ -1,3 +1,10 @@ +CVE-2011-2477 (Multiple cross-site scripting (XSS) vulnerabilities in config.c in config.cgi in Icinga ...) + - icinga <undetermined> + NOTE: 1.4.1 is said to be fixed + - nagios3 <undetermined> + NOTE: might be affected as well? +CVE-2011-2476 (Cross-site scripting (XSS) vulnerability in Coppermine Photo Gallery ...) + NOT-FOR-US: Coppermine Photo Gallery CVE-2011-2208 [Alpha-specific issue] - linux-2.6 2.6.32-1 NOTE: Support for Alpha was dropped with Squeeze, so marking 2.6.32 as fixed @@ -863,22 +870,22 @@ RESERVED CVE-2011-1865 RESERVED -CVE-2011-1864 - RESERVED -CVE-2011-1863 - RESERVED -CVE-2011-1862 - RESERVED -CVE-2011-1861 - RESERVED -CVE-2011-1860 - RESERVED -CVE-2011-1859 - RESERVED -CVE-2011-1858 - RESERVED -CVE-2011-1857 - RESERVED +CVE-2011-1864 (Unspecified vulnerability in HP OpenView Storage Data Protector ... ) + NOT-FOR-US: HP OpenView Storage Data Protector +CVE-2011-1863 (HP Service Manager ... unspecified script injection ...) + NOT-FOR-US: HP Service Manager +CVE-2011-1862 (Cross-site scripting (XSS) vulnerability in HP Service Manager ...) + NOT-FOR-US: HP Service Manager +CVE-2011-1861 (Unspecified vulnerability in HP Service Manager ...) + NOT-FOR-US: HP Service Manager +CVE-2011-1860 (Unspecified vulnerability in HP Service Manager ...) + NOT-FOR-US: HP Service Manager +CVE-2011-1859 (Unspecified vulnerability in HP Service Manager ...) + NOT-FOR-US: HP Service Manager +CVE-2011-1858 (Unspecified vulnerability in HP Service Manager ...) + NOT-FOR-US: HP Service Manager +CVE-2011-1857 (Unspecified vulnerability in HP Service Manager ...) + NOT-FOR-US: HP Service Manager CVE-2011-1856 (Cross-site scripting (XSS) vulnerability in HP Business Availability ...) NOT-FOR-US: HP Business Availability CVE-2011-1855 (Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x ...) @@ -3826,8 +3833,11 @@ [squeeze] - sun-java6 <no-dsa> (non-free not supported) - sun-java6 6.26-1 (bug #629852) - openjdk-6 <undetermined> (bug #629852) -CVE-2011-0868 - RESERVED +CVE-2011-0868 (Unspecified vulnerability in the Java Runtime Environment ...) + [lenny] - sun-java6 <no-dsa> (non-free not supported) + [squeeze] - sun-java6 <no-dsa> (non-free not supported) + - sun-java6 <undetermined> + - openjdk-6 <undetermined> CVE-2011-0867 RESERVED [lenny] - sun-java6 <no-dsa> (non-free not supported) @@ -5518,8 +5528,8 @@ CVE-2010-4668 (The blk_rq_map_user_iov function in block/blk-map.c in the Linux ...) {DSA-2153-1} - linux-2.6 2.6.32-29 -CVE-2010-4667 - RESERVED +CVE-2010-4667 (Cross-site scripting (XSS) vulnerability in Coppermine Photo Gallery ...) + NOT-FOR-US: Coppermine Photo Gallery CVE-2010-4666 RESERVED CVE-2010-4665 (Integer overflow in the ReadDirectory function in tiffdump.c in ...)