Author: jmm-guest Date: 2009-01-25 10:05:26 +0000 (Sun, 25 Jan 2009) New Revision: 11038
Modified: data/CVE/list data/spu-candidates.txt Log: - xrdp fixed - tcl no-dsa - fix gstreamer srcpkg name Modified: data/CVE/list =================================================================== --- data/CVE/list 2009-01-25 08:12:00 UTC (rev 11037) +++ data/CVE/list 2009-01-25 10:05:26 UTC (rev 11038) @@ -1,5 +1,5 @@ CVE-2009-XXXX [QuickTime Processing Vulnerabilities in GStreamer Good Plug-ins] - - gstreamer0.10-plugins-good 0.10.13-1 (bug #512818) + - gst-plugins-good0.10 0.10.13-1 (bug #512818) CVE-2009-0259 (The Word processor in OpenOffice.org 1.1.2 through 1.1.5 allows ...) TODO: check CVE-2009-0254 (Stack-based buffer overflow in easyHDR PRO 1.60.2 allows user-assisted ...) @@ -434,11 +434,11 @@ CVE-2008-5883 (Absolute path traversal vulnerability in front-end/dir.php in mini-pub ...) NOT-FOR-US: mini-pub CVE-2008-5904 (The rdp_rdp_process_color_pointer_pdu function in rdp/rdp_rdp.c in ...) - - xrdp <unfixed> (bug #511641) + - xrdp 0.4.0~dfsg-9 (bug #511641) CVE-2008-5903 (Array index error in the xrdp_bitmap_def_proc function in xrdp/funcs.c ...) - - xrdp <unfixed> (bug #511641) + - xrdp 0.4.0~dfsg-9 (bug #511641) CVE-2008-5902 (Buffer overflow in the xrdp_bitmap_invalidate function in ...) - - xrdp <unfixed> (bug #511641) + - xrdp 0.4.0~dfsg-9 (bug #511641) CVE-2009-XXXX [amaya: stack based buffer overflow] - amaya <unfixed> (medium; bug #507587) NOTE: different vector than described in CVE-2008-5282, see 507587#15 @@ -20360,7 +20360,9 @@ - postgresql-8.2 8.2.6-1 - postgresql-8.1 8.1.11-1 - tcl8.3 8.3.5-13 (low) + [etch] - tcl8.3 <no-dsa> (Minor issue) - tcl8.4 8.4.17-1 (low) + [etch] - tcl8.4 <no-dsa> (Minor issue) [sarge] - postgresql <unfixed> CVE-2007-4771 (Heap-based buffer overflow in the doInterval function in regexcmp.cpp ...) {DSA-1511-1} Modified: data/spu-candidates.txt =================================================================== --- data/spu-candidates.txt 2009-01-25 08:12:00 UTC (rev 11037) +++ data/spu-candidates.txt 2009-01-25 10:05:26 UTC (rev 11038) @@ -478,6 +478,10 @@ -- +tcl8.3/tcl8.4 (CVE-2007-4772) + +-- + texlive-bin (CVE-2007-5935 CVE-2007-5936 CVE-2007-5937) notified maintainer _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/mailman/listinfo/secure-testing-commits