[Secure-testing-commits] r3960 - data/CVE

2006-05-17 Thread Joey Hess
Author: joeyh
Date: 2006-05-17 09:14:22 + (Wed, 17 May 2006)
New Revision: 3960

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===
--- data/CVE/list   2006-05-17 07:44:38 UTC (rev 3959)
+++ data/CVE/list   2006-05-17 09:14:22 UTC (rev 3960)
@@ -744,6 +744,7 @@
 CVE-2006-2017 (Dnsmasq 2.29 allows remote attackers to cause a denial of 
service ...)
- dnsmasq 2.30-1 (medium)
 CVE-2006-2016 (Multiple cross-site scripting (XSS) vulnerabilities in 
phpLDAPadmin ...)
+   {DSA-1057-1}
- phpldapadmin 0.9.8.3-1 (bug #365313; low)
- egroupware 1.2-1.dfsg-1 (bug #365314; low)
NOTE: egroupware 1.2-1.dfsg-1 dropped phpldapadmin


___
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits


[Secure-testing-commits] r3961 - data/CVE

2006-05-17 Thread Stefan Fritsch
Author: stef-guest
Date: 2006-05-17 19:08:32 + (Wed, 17 May 2006)
New Revision: 3961

Modified:
   data/CVE/list
Log:
amaya fixed
linphone fixed


Modified: data/CVE/list
===
--- data/CVE/list   2006-05-17 09:14:22 UTC (rev 3960)
+++ data/CVE/list   2006-05-17 19:08:32 UTC (rev 3961)
@@ -1039,7 +1039,7 @@
 CVE-2006-1901 (Mozilla Camino 1.0 and earlier allow remote attackers to cause 
a ...)
NOT-FOR-US: Mozilla Camino
 CVE-2006-1900 (Multiple buffer overflows in World Wide Web Consortium (W3C) 
Amaya ...)
-   - amaya unfixed (bug #362575; medium)
+   - amaya 9.51-1 (bug #362575; medium)
 CVE-2006-1899 (Multiple cross-site scripting (XSS) vulnerabilities in dev 
Neuron Blog ...)
NOT-FOR-US: Neuron Blog
 CVE-2006-1898 (Multiple cross-site scripting (XSS) vulnerabilities in Ralph 
Capper ...)
@@ -1705,7 +1705,7 @@
 CVE-2004-2655 (rdesktop 1.3.1 with xscreensaver 4.14, and possibly other 
versions, ...)
- xscreensaver 4.18-1 (low)
 CVE-2006- [linphone insecure password leakage]
-   - linphone unfixed (bug #361913)
+   - linphone 1.3.5-1 (bug #361913)
 CVE-2006-1656 (vserver in util-vserver 0.30.209 executes a command as root 
when the ...)
- util-vserver 0.30.210-1 (bug #360438; unimportant)
 CVE-2006-1655 (Unspecified vulnerability in mpg123 0.59r allows user-complicit 
...)


___
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits


[Secure-testing-commits] Processing r3961 failed

2006-05-17 Thread secure-testing
The error message was:

error: unknown package note 'Hardly exploitable'

make: *** [all] Error 1

___
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits


[Secure-testing-commits] r3962 - data/CVE

2006-05-17 Thread Stefan Fritsch
Author: stef-guest
Date: 2006-05-17 19:22:59 + (Wed, 17 May 2006)
New Revision: 3962

Modified:
   data/CVE/list
Log:
fix acidbase entry

Modified: data/CVE/list
===
--- data/CVE/list   2006-05-17 19:08:32 UTC (rev 3961)
+++ data/CVE/list   2006-05-17 19:22:59 UTC (rev 3962)
@@ -1847,9 +1847,9 @@
NOT-FOR-US: Microsoft Windows Help 
 CVE-2006-1590 (Cross-site scripting (XSS) vulnerability in the PrintFreshPage 
...)
- acidbase unfixed (bug #363548; low)
-   [sarge] - acidbase (Hardly exploitable)
+   [sarge] - acidbase no-dsa (Hardly exploitable)
- acidlab unfixed (bug #363549; low)
-   [sarge] - acidlab (Hardly exploitable)
+   [sarge] - acidlab no-dsa (Hardly exploitable)
 CVE-2006-1589 (The elf_load_file function in NetBSD 2.0 through 3.0 allows 
local ...)
NOT-FOR-US: NetBSD kernel
 CVE-2006-1588 (The bridge ioctl (if_bridge code) in NetBSD 1.6 through 3.0 
does not ...)


___
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits


[Secure-testing-commits] Processing r3962 failed

2006-05-17 Thread secure-testing
The error message was:

data/CVE/list: 1278: error: bug name CVE-2006-2192 is not unique
make: *** [all] Error 1

___
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits


[Secure-testing-commits] r3963 - data/CVE

2006-05-17 Thread Stefan Fritsch
Author: stef-guest
Date: 2006-05-17 19:27:50 + (Wed, 17 May 2006)
New Revision: 3963

Modified:
   data/CVE/list
Log:
remove double CVE-2006-2192 entry

Modified: data/CVE/list
===
--- data/CVE/list   2006-05-17 19:22:59 UTC (rev 3962)
+++ data/CVE/list   2006-05-17 19:27:50 UTC (rev 3963)
@@ -356,8 +356,6 @@
RESERVED
 CVE-2006-2193
RESERVED
-CVE-2006-2192
-   RESERVED
 CVE-2006-2191
RESERVED
 CVE-2006-2190 (Cross-site scripting (XSS) vulnerability in ow-shared.pl in ...)
@@ -1276,6 +1274,7 @@
 CVE-2005-4785 (Cross-site scripting (XSS) vulnerability in QuickBlogger 1.4 
and ...)
NOT-FOR-US: QuickBlogger
 CVE-2006-2192 [kphone stores SIP passwords in world readable files]
+   RESERVED
- kphone 1:4.2-3 (bug #337830; low)
 CVE-2006- [resmgr access restriction bypass]
- resmgr 1.0-4 (low)


___
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits