Author: jmm Date: 2012-05-07 07:53:32 +0000 (Mon, 07 May 2012) New Revision: 19160 Modified: data/CVE/list Log: horizon fixed (not in stable) libconfig-inifiles-perl spu libxslt fixed Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-05-06 22:47:19 UTC (rev 19159) +++ data/CVE/list 2012-05-07 07:53:32 UTC (rev 19160) @@ -13,6 +13,7 @@ CVE-2012-2451 [libconfig-inifiles-perl insecure temporary file creation] RESERVED - libconfig-inifiles-perl <unfixed> (bug #671255; low) + [squeeze] - libconfig-inifiles-perl <no-dsa> (Will be fixed in spu upload) NOTE: https://bitbucket.org/shlomif/perl-config-inifiles/changeset/a08fa26f4f59 NOTE: http://seclists.org/oss-sec/2012/q2/225 CVE-2012-2445 @@ -771,7 +772,7 @@ RESERVED CVE-2012-2144 [OSSA 2012-006: Horizon session fixation and reuse] RESERVED - - horizon <unfixed> (bug #671604) + - horizon 2012.1-4 (bug #671604) CVE-2012-2143 RESERVED CVE-2012-2142 @@ -9410,7 +9411,7 @@ - chromium-browser 17.0.963.56~r121963-1 - webkit <undetermined> CVE-2011-3970 (libxslt, as used in Google Chrome before 17.0.963.46, allows remote ...) - - libxslt <unfixed> (low; bug #660650) + - libxslt 1.1.26-11 (low; bug #660650) [squeeze] - libxslt <no-dsa> (Minor issue) CVE-2011-3969 (Use-after-free vulnerability in Google Chrome before 17.0.963.46 ...) - chromium-browser 17.0.963.56~r121963-1