Author: jmm Date: 2012-02-20 07:02:50 +0000 (Mon, 20 Feb 2012) New Revision: 18486 Modified: data/CVE/list Log: cherokee, chromium fixed Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-02-19 21:14:20 UTC (rev 18485) +++ data/CVE/list 2012-02-20 07:02:50 UTC (rev 18486) @@ -5940,63 +5940,63 @@ - ffmpeg <removed> - ffmpeg-debian <end-of-life> CVE-2011-3972 (The shader translator implementation in Google Chrome before ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3971 (Use-after-free vulnerability in Google Chrome before 17.0.963.46 ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3970 (libxslt, as used in Google Chrome before 17.0.963.46, allows remote ...) TODO: check CVE-2011-3969 (Use-after-free vulnerability in Google Chrome before 17.0.963.46 ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3968 (Use-after-free vulnerability in Google Chrome before 17.0.963.46 ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3967 (Unspecified vulnerability in Google Chrome before 17.0.963.46 allows ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3966 (Use-after-free vulnerability in Google Chrome before 17.0.963.46 ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3965 (Google Chrome before 17.0.963.46 does not properly check signatures, ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3964 (Google Chrome before 17.0.963.46 does not properly implement the ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3963 (Google Chrome before 17.0.963.46 does not properly handle PDF FAX ...) - chromium-browser <unfixed> - webkit <undetermined> CVE-2011-3962 (Google Chrome before 17.0.963.46 does not properly perform path ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3961 (Race condition in Google Chrome before 17.0.963.46 allows remote ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3960 (Google Chrome before 17.0.963.46 does not properly decode audio data, ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3959 (Buffer overflow in the locale implementation in Google Chrome before ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3958 (Google Chrome before 17.0.963.46 does not properly perform casts of ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3957 (Use-after-free vulnerability in the garbage-collection functionality ...) - chromium-browser <unfixed> - webkit <undetermined> CVE-2011-3956 (The extension implementation in Google Chrome before 17.0.963.46 does ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3955 (Google Chrome before 17.0.963.46 allows remote attackers to cause a ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3954 (Google Chrome before 17.0.963.46 allows remote attackers to cause a ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3953 (Google Chrome before 17.0.963.46 does not prevent monitoring of the ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3952 RESERVED @@ -8582,7 +8582,7 @@ CVE-2011-3028 RESERVED CVE-2011-3027 (Google Chrome before 17.0.963.56 does not properly perform a cast of ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3026 (Integer overflow in libpng, as used in Google Chrome before ...) {DSA-2410-1} @@ -8590,31 +8590,31 @@ CVE-2011-3025 (Google Chrome before 17.0.963.56 does not properly parse H.264 data, ...) TODO: check CVE-2011-3024 (Google Chrome before 17.0.963.56 allows remote attackers to cause a ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3023 (Use-after-free vulnerability in Google Chrome before 17.0.963.56 ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3022 (translate/translate_manager.cc in Google Chrome before 17.0.963.56 and ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3021 (Use-after-free vulnerability in Google Chrome before 17.0.963.56 ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3020 (Unspecified vulnerability in the Native Client validator ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3019 (Heap-based buffer overflow in Google Chrome before 17.0.963.56 allows ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3018 (Heap-based buffer overflow in Google Chrome before 17.0.963.56 allows ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3017 (Use-after-free vulnerability in Google Chrome before 17.0.963.56 ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3016 (Use-after-free vulnerability in Google Chrome before 17.0.963.56 ...) - - chromium-browser <unfixed> + - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3015 (Multiple integer overflows in the PDF codecs in Google Chrome before ...) - chromium-browser <unfixed> @@ -11135,7 +11135,7 @@ [lenny] - vlc <not-affected> (Vulnerable code not present) NOTE: http://repo.or.cz/w/vlc.git/commitdiff/cd929923ff49175a501bb3e9553a683bc42ff61c CVE-2011-2190 (The generate_admin_password function in Cherokee before 1.2.99 uses ...) - - cherokee <unfixed> (low; bug #647205) + - cherokee 1.0.14-1 (low; bug #647205) [squeeze] - cherokee 1.0.8-5+squeeze1 [lenny] - cherokee <no-dsa> (Minor issue) NOTE: http://code.google.com/p/cherokee/issues/detail?id=1212