Author: mgilbert Date: 2012-04-18 04:17:03 +0000 (Wed, 18 Apr 2012) New Revision: 18994 Modified: data/CVE/list Log: fix some source package names Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-04-18 04:16:34 UTC (rev 18993) +++ data/CVE/list 2012-04-18 04:17:03 UTC (rev 18994) @@ -2382,8 +2382,8 @@ NOTE: http://www.openwall.com/lists/oss-security/2012/03/14/3 CVE-2012-1176 [buffer overflow in python-pyfribidi] RESERVED - - python-pyfribidi 0.11.0-1 (bug #663189) - [squeeze] - python-pyfribidi <no-dsa> (Minor issue) + - pyfribidi 0.11.0-1 (bug #663189) + [squeeze] - pyfribidi <no-dsa> (Minor issue) CVE-2012-1175 [gnash integer overflow] RESERVED {DSA-2435-1} @@ -2658,11 +2658,11 @@ RESERVED NOT-FOR-US: JBoss Operations Network CVE-2012-1099 (Cross-site scripting (XSS) vulnerability in ...) - - ruby-actionpack 2.3.14-3 (bug #668607) + - ruby-actionpack-2.3 2.3.14-3 (bug #668607) - rails <not-affected> (code lives within ruby-actionpack in unstable) [squeeze] - rails <unfixed> CVE-2012-1098 (Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before ...) - - ruby-actionpack <unfixed> (bug #668977) + - ruby-actionpack-2.3 <unfixed> (bug #668977) - rails <not-affected> (code lives within ruby-actionpack in unstable) [squeeze] - rails <unfixed> CVE-2012-1097 @@ -3190,7 +3190,7 @@ - linux-2.6 2.6.33-1 CVE-2012-0878 [python-pastescript improper privilege dropping] RESERVED - - python-pastescript <unfixed> (low; bug #661061) + - pastescript <unfixed> (low; bug #661061) CVE-2012-0877 RESERVED CVE-2012-0876 @@ -3388,8 +3388,8 @@ RESERVED - rpm 4.9.1.3-1 (bug #667031) CVE-2012-0814 (The auth_parse_options function in auth-options.c in sshd in OpenSSH ...) - - openssh-server 1:5.6p1-1 (low; bug #657445) - [squeeze] - openssh-server <no-dsa> (Minor issue) + - openssh 1:5.6p1-1 (low; bug #657445) + [squeeze] - openssh <no-dsa> (Minor issue) CVE-2012-0813 [wicd cleartext passwords] RESERVED - wicd 1.7.1~b3-4 (unimportant; bug #652417) @@ -8045,7 +8045,7 @@ - ruby1.9.1 <not-affected> (Only affected trunk versions) CVE-2011-4120 [authentication bypass by pressing ctrl-d] RESERVED - - libpam-yubico 2.10-1 + - yubico-pam 2.10-1 CVE-2011-4119 RESERVED CVE-2011-4117 @@ -33968,7 +33968,7 @@ CVE-2009-4484 (Multiple stack-based buffer overflows in the CertDecoder::GetName ...) {DSA-1997-1} - mysql-dfsg-5.0 <removed> (medium) - - mysql-dfsg-5.1 5.1.41-4 (medium) + - mysql-5.1 5.1.41-4 (medium) NOTE: http://intevydis.blogspot.com/2010/01/mysq-yassl-stack-overflow.html NOTE: http://bazaar.launchpad.net/~mysql/mysql-server/mysql-5.0/revision/2837.1.1 CVE-2009-4483 (Unspecified vulnerability in LDAP3A.exe in MailSite 8.0.4 allows ...) @@ -35250,7 +35250,7 @@ CVE-2009-4074 (The XSS Filter in Microsoft Internet Explorer 8 allows remote ...) NOT-FOR-US: Microsoft Internet Explorer 8 CVE-2008-7247 (sql/sql_table.cc in MySQL 5.0.x through 5.0.88, 5.1.x through 5.1.41, ...) - - mysql-dfsg-5.1 <unfixed> (low; bug #569484) + - mysql-5.1 <unfixed> (low; bug #569484) - mysql-dfsg-5.0 <not-affected> (Vulnerable code not present) CVE-2009-4214 (Cross-site scripting (XSS) vulnerability in the strip_tags function in ...) {DSA-2301-1 DSA-2260-1} @@ -35380,7 +35380,7 @@ - kvm <removed> (low; bug #562075) CVE-2009-4030 (MySQL 5.1.x before 5.1.41 allows local users to bypass certain ...) {DSA-1997-1} - - mysql-dfsg-5.1 5.1.43-1 + - mysql-5.1 5.1.43-1 - mysql-dfsg-5.0 <removed> CVE-2009-4029 (The (1) dist or (2) distcheck rules in GNU Automake 1.11.1, 1.10.3, ...) - automake 1:1.4-p6-13.1 @@ -35394,7 +35394,7 @@ NOTE: spu will be released to avoid spreading the bug even further NOTE: http://lists.gnu.org/archive/html/automake/2009-12/msg00012.html CVE-2009-4028 (The vio_verify_callback function in viosslfactories.c in MySQL 5.0.x ...) - - mysql-dfsg-5.1 <not-affected> (Vulnerable code not present) + - mysql-5.1 <not-affected> (Vulnerable code not present) - mysql-dfsg-5.0 <not-affected> (Vulnerable code not present) NOTE: built with --without-openssl CVE-2009-4027 (Race condition in the mac80211 subsystem in the Linux kernel before ...) @@ -35437,7 +35437,7 @@ - linux-2.6.24 <removed> (medium) CVE-2009-4019 (mysqld in MySQL 5.0.x before 5.0.88 and 5.1.x before 5.1.41 does not ...) {DSA-1997-1} - - mysql-dfsg-5.1 5.1.41-1 + - mysql-5.1 5.1.41-1 - mysql-dfsg-5.0 <removed> NOTE: http://dev.mysql.com/doc/refman/5.1/en/news-5-1-41.html NOTE: http://dev.mysql.com/doc/refman/5.0/en/news-5-0-88.html @@ -46162,7 +46162,7 @@ NOT-FOR-US: phpScheduleIt CVE-2009-0819 (sql/item_xmlfunc.cc in MySQL 5.1 before 5.1.32 and 6.0 before 6.0.10 ...) - mysql-dfsg-5.0 <not-affected> (Vulnerable code introduced in 5.1.5) - - mysql-dfsg-5.1 5.1.32-1 + - mysql-5.1 5.1.32-1 CVE-2009-0818 (Cross-site scripting (XSS) vulnerability in the ...) NOT-FOR-US: Taxonomy Theme module for Drupal CVE-2009-0817 (Cross-site scripting (XSS) vulnerability in the Protected Node module ...)