Author: djoume-guest
Date: 2006-03-10 19:27:06 +0000 (Fri, 10 Mar 2006)
New Revision: 3584

Modified:
   data/CVE/list
Log:
* unimportant wordpress issue
* default config issue with bind
* some NFU
* claimed


Modified: data/CVE/list
===================================================================
--- data/CVE/list       2006-03-10 18:07:33 UTC (rev 3583)
+++ data/CVE/list       2006-03-10 19:27:06 UTC (rev 3584)
@@ -285,28 +285,28 @@
 CVE-2006-0989
        RESERVED
 end claimed by jmm
-begin claimed by djoume
 CVE-2006-0988 (The default configuration of the DNS Server service on Windows 
Server ...)
-       TODO: check
+       NOT-FOR-US: MS Windows issue
 CVE-2006-0987 (The default configuration of ISC BIND, when configured as a 
caching ...)
-       TODO: check
+       - bind <unfixed> (bug #355787; low)
+       - bind9 <unfixed> (bug #356266; low)
 CVE-2006-0986 (WordPress 2.0.1 and earlier allows remote attackers to obtain 
...)
-       TODO: check
+       - wordpress <unfixed> (bug #355055; unimportant)
 CVE-2006-0985 (Multiple cross-site scripting (XSS) vulnerabilities in the 
&quot;post ...)
-       TODO: check
+       - wordpress <unfixed> (bug #355055; unimportant)
 CVE-2006-0984 (Cross-site scripting (XSS) vulnerability in inc_header.php in 
EJ3 TOPo ...)
-       TODO: check
+       NOT-FOR-US : EJ3 TOPo not in debian
 CVE-2006-0983 (Cross-site scripting (XSS) vulnerability in index.php in 
QwikiWiki 1.4 ...)
-       TODO: check
+       NOT-FOR-US : QWikiWiki not in debian
 CVE-2006-0982 (The on-access scanner for McAfee Virex 7.7 for Macintosh, in 
some ...)
-       TODO: check
+       NOT-FOR-US : McAfee Virex 7.7 for Macintosh
 CVE-2006-0981 (Directory traversal vulnerability in e-merge WinAce 2.6 and 
earlier ...)
-       TODO: check
+       NOT-FOR-US : WinAce
 CVE-2006-0980 (Multiple cross-site scripting (XSS) vulnerabilities in Jay 
Eckles CGI ...)
-       TODO: check
+       NOT-FOR-US : Jay Eckles CGI Calendar
 CVE-2006-0979 (Unspecified vulnerability in the local weblog publisher in 
Nidelven IT ...)
-       TODO: check
-end claimed by djoume
+       NOT-FOR-US : Nidelven IT Issue Dealer
+begin claimed by djoume
 CVE-2006-0978 (Multiple cross-site scripting (XSS) vulnerabilities in the View 
...)
        TODO: check
 CVE-2006-0977 (Craig Morrison Mail Transport System Professional (aka MTS Pro) 
acts ...)
@@ -327,6 +327,7 @@
        TODO: check
 CVE-2006-0969 (PHP remote file inclusion vulnerability in index.php in Top 
sites de ...)
        TODO: check
+end claimed by djoume
 CVE-2006-0968 (The ncprwsnt service in NCP Network Communication Secure Client 
8.11 ...)
        TODO: check
 CVE-2006-0967 (NCP Network Communication Secure Client 8.11 Build 146, and 
possibly ...)


_______________________________________________
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits

Reply via email to