Author: stef-guest
Date: 2006-04-17 19:48:09 +0000 (Mon, 17 Apr 2006)
New Revision: 3821
Modified:
data/CVE/list
Log:
xine bugnum; more NFUs
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2006-04-17 19:30:31 UTC (rev 3820)
+++ data/CVE/list 2006-04-17 19:48:09 UTC (rev 3821)
@@ -375,7 +375,7 @@
CVE-2006-1665 (Multiple cross-site scripting (XSS) vulnerabilities in Arab
Portal ...)
NOT-FOR-US: Arab Portal
CVE-2006-1664 (Buffer overflow in xine_list_delete_current in libxine 1.14 and
...)
- - libxine1 <unfixed> (bug filed; medium)
+ - libxine1 <unfixed> (bug #363127; medium)
CVE-2006-1663
REJECTED
CVE-2006-1662 (The frontpage option in Limbo CMS 1.0.4.2 and 1.0.4.1 allows
remote ...)
@@ -422,51 +422,51 @@
CVE-2006-1649 (The "restore to" selection in the "quarantine a
file" capability of ...)
NOT-FOR-US: Eset Software NOD32 Antivirus 2.5
CVE-2006-1648 (SMART SynchronEyes Student and Teacher 6.0, and possibly
earlier ...)
- TODO: check
+ NOT-FOR-US: SMART SynchronEyes
CVE-2006-1647 (An unspecified "logical programming mistake" in SMART
SynchronEyes ...)
- TODO: check
+ NOT-FOR-US: SMART SynchronEyes
CVE-2006-1646 (The Internet Key Exchange version 1 (IKEv1) implementation ...)
TODO: check
CVE-2006-1645 (Cross-site scripting (XSS) vulnerability in Anton Vlasov and
Rostislav ...)
- TODO: check
+ NOT-FOR-US: ReloadCMS
CVE-2006-1644 (login.php in Interact 2.1.1 generates different responses
depending on ...)
- TODO: check
+ NOT-FOR-US: Interact
CVE-2006-1643 (SQL injection vulnerability in login.php in Interact 2.1.1
allows ...)
- TODO: check
+ NOT-FOR-US: Interact
CVE-2006-1642 (Cross-site scripting (XSS) vulnerability in Interact 2.1.1
allows ...)
- TODO: check
+ NOT-FOR-US: Interact
CVE-2006-1641 (Multiple SQL injection vulnerabilities in CzarNews 1.14 allow
remote ...)
- TODO: check
+ NOT-FOR-US: CzarNews
CVE-2006-1640 (Cross-site scripting (XSS) vulnerability in news.php in
CzarNews 1.14 ...)
- TODO: check
+ NOT-FOR-US: CzarNews
CVE-2006-1639 (SQL injection vulnerability in index.php in wpBlog 0.4 allows
remote ...)
- TODO: check
+ NOT-FOR-US: wpBlog
CVE-2006-1638 (Multiple SQL injection vulnerabilities in aWebBB 1.2 allow
remote ...)
- TODO: check
+ NOT-FOR-US: aWebBB
CVE-2006-1637 (Multiple cross-site scripting (XSS) vulnerabilities in aWebBB
1.2 ...)
- TODO: check
+ NOT-FOR-US: aWebBB
CVE-2006-1636 (PHP remote file inclusion vulnerability in get_header.php in
VWar ...)
- TODO: check
+ NOT-FOR-US: VWar
CVE-2006-1635 (LucidCMS 2.0.0 RC4 allows remote attackers to obtain sensitive
...)
- TODO: check
+ NOT-FOR-US: LucidCMS
CVE-2006-1634 (Cross-site scripting (XSS) vulnerability in index.php in
LucidCMS ...)
- TODO: check
+ NOT-FOR-US: LucidCMS
CVE-2006-1633
RESERVED
CVE-2006-1632
RESERVED
CVE-2006-1631 (Unspecified vulnerability in the HTTP compression functionality
in ...)
- TODO: check
+ NOT-FOR-US: Cisco
CVE-2006-1629 (OpenVPN 2.0 through 2.0.5 allows remote malicious servers to
execute ...)
- openvpn 2.0.6-1 (bug #360559; medium)
CVE-2006-1628 (Adobe LiveCycle Workflow 7.01 and LiveCycle Forum Manager 7.01
allows ...)
- TODO: check
+ NOT-FOR-US: Adobe LiveCycle
CVE-2006-1627 (Adobe Document Server for Reader Extensions 6.0 does not
provide ...)
- TODO: check
+ NOT-FOR-US: Adobe Document Server
CVE-2006-1626 (Internet Explorer 6 for Windows XP SP2 and earlier allows
remote ...)
- TODO: check
+ NOT-FOR-US: Internet Explorer
CVE-2006-1625 (Cross-site scripting (XSS) vulnerability in
inc/functions_post.php in ...)
- TODO: check
+ NOT-FOR-US: MyBB
CVE-2006-1624 (The default configuration of syslogd in the Linux sysklogd
package ...)
TODO: check
CVE-2006-1623 (Unspecified vulnerability in main.php in an unspecified
"file created ...)
_______________________________________________
Secure-testing-commits mailing list
[email protected]
http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits