Author: joeyh Date: 2012-02-28 21:14:27 +0000 (Tue, 28 Feb 2012) New Revision: 18559 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-02-28 20:03:38 UTC (rev 18558) +++ data/CVE/list 2012-02-28 21:14:27 UTC (rev 18559) @@ -1774,17 +1774,20 @@ [squeeze] - sun-java6 <no-dsa> (Non-free not supported) CVE-2012-0507 RESERVED + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 - sun-java6 <removed> [squeeze] - sun-java6 <no-dsa> (Non-free not supported) NOTE: Replacement for misused CVE-2011-3571. CVE-2012-0506 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...) + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 - sun-java6 <removed> [squeeze] - sun-java6 <no-dsa> (Non-free not supported) CVE-2012-0505 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...) + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 CVE-2012-0504 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...) @@ -1792,16 +1795,19 @@ - openjdk-7 <not-affected> (Only applies to the Windows-specific update tool) - sun-java6 <not-affected> (Only applies to the Windows-specific update tool) CVE-2012-0503 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...) + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 - sun-java6 <removed> [squeeze] - sun-java6 <no-dsa> (Non-free not supported) CVE-2012-0502 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...) + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 - sun-java6 <removed> [squeeze] - sun-java6 <no-dsa> (Non-free not supported) CVE-2012-0501 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...) + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 - sun-java6 <removed> @@ -1819,6 +1825,7 @@ [squeeze] - sun-java6 <no-dsa> (Non-free not supported) NOTE: According to the Red Hat bug tracker, this vulnerability does not affect Iced Tea/OpenJDK. CVE-2012-0497 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...) + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 - sun-java6 <removed> @@ -2462,6 +2469,7 @@ CVE-2011-5036 (Rack before 1.1.3, 1.2.x before 1.2.5, and 1.3.x before 1.3.6 computes ...) - ruby-rack <unfixed> (bug #653963) CVE-2011-5035 (Oracle Glassfish 2.1.1, 3.0.1, and 3.1.1, as used in Communications ...) + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 - sun-java6 <removed> @@ -7410,6 +7418,7 @@ CVE-2011-3564 (Unspecified vulnerability in Oracle GlassFish Enterprise Server 2.1.1 ...) TODO: check CVE-2011-3563 (Unspecified vulnerability in the Java Runtime Environment (JRE) ...) + {DSA-2420-1} - openjdk-6 6b24-1.11.1-1 - openjdk-7 7~u3-2.1-1 CVE-2011-3562 @@ -7948,6 +7957,7 @@ [lenny] - rpm <no-dsa> (rpm isn''t used a a package manager, very limited attack vector) CVE-2011-3377 [IcedTea browser plugin Same Origin Policy suffix issue] RESERVED + {DSA-2420-1} - openjdk-6 6b21~pre1-1 - icedtea-web 1.1.4-1 NOTE: Browser plugin was removed in openjdk-6 6b21~pre1-1.