Author: luk Date: 2012-01-05 20:39:18 +0000 (Thu, 05 Jan 2012) New Revision: 18044 Modified: data/CVE/list Log: Mark openldap as fixed Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-01-05 20:12:15 UTC (rev 18043) +++ data/CVE/list 2012-01-05 20:39:18 UTC (rev 18044) @@ -3178,7 +3178,7 @@ [lenny] - linux-2.6 <not-affected> (introduced in 2.6.37 with eaf06b241b091357e72b76863ba16e89610d31bd) [squeeze] - linux-2.6 <not-affected> (introduced in 2.6.37 with eaf06b241b091357e72b76863ba16e89610d31bd) CVE-2011-4079 (Off-by-one error in the UTF8StringNormalize function in OpenLDAP ...) - - openldap <unfixed> (unimportant; bug #647610) + - openldap 2.4.28-1 (unimportant; bug #647610) NOTE: Not exploitable with glibc, see NOTE: http://www.openldap.org/its/index.cgi/Software%20Bugs?id=7059;selectid=7059 NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2011-4079 @@ -6615,7 +6615,6 @@ RESERVED CVE-2011-2932 (Cross-site scripting (XSS) vulnerability in ...) - rails 2.3.14 - [squeeze] - rails <unfixed> CVE-2011-2931 (Cross-site scripting (XSS) vulnerability in the strip_tags helper in ...) {DSA-2301-1} - rails 2.3.14