Author: joeyh Date: 2012-09-13 21:14:18 +0000 (Thu, 13 Sep 2012) New Revision: 20157
Modified: data/CVE/list Log: automatic update Modified: data/CVE/list =================================================================== --- data/CVE/list 2012-09-13 19:17:54 UTC (rev 20156) +++ data/CVE/list 2012-09-13 21:14:18 UTC (rev 20157) @@ -1,3 +1,21 @@ +CVE-2012-4902 + RESERVED +CVE-2012-4901 + RESERVED +CVE-2012-4900 + RESERVED +CVE-2012-4899 + RESERVED +CVE-2012-4898 + RESERVED +CVE-2012-4897 + RESERVED +CVE-2012-4896 + RESERVED +CVE-2012-4895 + RESERVED +CVE-2012-4894 + RESERVED CVE-2012-4893 (Multiple cross-site request forgery (CSRF) vulnerabilities in ...) TODO: check CVE-2012-4892 (Multiple cross-site scripting (XSS) vulnerabilities in FlatnuX CMS ...) @@ -761,8 +779,8 @@ RESERVED CVE-2012-4630 RESERVED -CVE-2012-4629 - RESERVED +CVE-2012-4629 (The Cisco ASA-CX Context-Aware Security module before 9.0.2-103 for ...) + TODO: check CVE-2012-4628 RESERVED CVE-2012-4627 @@ -1371,6 +1389,7 @@ - openjdk-6 <not-affected> (Only affects Java 7) CVE-2012-4419 RESERVED + {DSA-2548-1} - tor 0.2.3.22-rc-1 NOTE: http://www.openwall.com/lists/oss-security/2012/09/12/5 NOTE: https://gitweb.torproject.org/tor.git/blob/release-0.2.2:/ReleaseNotes @@ -2524,8 +2543,8 @@ RESERVED CVE-2012-3936 RESERVED -CVE-2012-3935 - RESERVED +CVE-2012-3935 (Cisco Unified Presence (CUP) before 8.6(3) and Jabber Extensible ...) + TODO: check CVE-2012-3934 RESERVED CVE-2012-3933 @@ -2998,34 +3017,34 @@ RESERVED CVE-2012-3713 RESERVED -CVE-2012-3712 - RESERVED -CVE-2012-3711 - RESERVED -CVE-2012-3710 - RESERVED -CVE-2012-3709 - RESERVED -CVE-2012-3708 - RESERVED -CVE-2012-3707 - RESERVED -CVE-2012-3706 - RESERVED -CVE-2012-3705 - RESERVED -CVE-2012-3704 - RESERVED -CVE-2012-3703 - RESERVED -CVE-2012-3702 - RESERVED -CVE-2012-3701 - RESERVED -CVE-2012-3700 - RESERVED -CVE-2012-3699 - RESERVED +CVE-2012-3712 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3711 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3710 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3709 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3708 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3707 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3706 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3705 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3704 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3703 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3702 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3701 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3700 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3699 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3698 (Apple Xcode before 4.4 does not properly compose a designated ...) NOT-FOR-US: Apple Xcode CVE-2012-3697 (WebKit in Apple Safari before 6.0 does not properly handle file: URLs, ...) @@ -3038,24 +3057,24 @@ - webkit <undetermined> CVE-2012-3693 (Incomplete blacklist vulnerability in WebKit in Apple Safari before ...) - webkit <undetermined> -CVE-2012-3692 - RESERVED +CVE-2012-3692 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3691 (WebKit in Apple Safari before 6.0 does not properly handle Cascading ...) - webkit <undetermined> CVE-2012-3690 (WebKit in Apple Safari before 6.0 does not properly handle ...) - webkit <undetermined> CVE-2012-3689 (WebKit in Apple Safari before 6.0 does not properly handle ...) - webkit <undetermined> -CVE-2012-3688 - RESERVED -CVE-2012-3687 - RESERVED +CVE-2012-3688 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3687 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3686 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3685 - RESERVED -CVE-2012-3684 - RESERVED +CVE-2012-3685 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3684 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3683 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3682 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) @@ -3068,20 +3087,20 @@ - webkit <undetermined> CVE-2012-3678 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3677 - RESERVED -CVE-2012-3676 - RESERVED -CVE-2012-3675 - RESERVED +CVE-2012-3677 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3676 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3675 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3674 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3673 - RESERVED -CVE-2012-3672 - RESERVED -CVE-2012-3671 - RESERVED +CVE-2012-3673 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3672 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3671 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3670 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3669 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) @@ -3102,42 +3121,42 @@ RESERVED CVE-2012-3661 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3660 - RESERVED -CVE-2012-3659 - RESERVED -CVE-2012-3658 - RESERVED -CVE-2012-3657 - RESERVED +CVE-2012-3660 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3659 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3658 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3657 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3656 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3655 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3654 - RESERVED +CVE-2012-3654 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3653 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3652 - RESERVED -CVE-2012-3651 - RESERVED +CVE-2012-3652 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3651 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3650 (WebKit in Apple Safari before 6.0 accesses uninitialized memory ...) - webkit <undetermined> -CVE-2012-3649 - RESERVED -CVE-2012-3648 - RESERVED -CVE-2012-3647 - RESERVED +CVE-2012-3649 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3648 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3647 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3646 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3645 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3644 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3643 - RESERVED +CVE-2012-3643 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3642 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3641 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) @@ -3158,8 +3177,8 @@ - webkit <undetermined> CVE-2012-3633 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3632 - RESERVED +CVE-2012-3632 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3631 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3630 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) @@ -3174,32 +3193,32 @@ - webkit <undetermined> CVE-2012-3625 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3624 - RESERVED -CVE-2012-3623 - RESERVED -CVE-2012-3622 - RESERVED -CVE-2012-3621 - RESERVED +CVE-2012-3624 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3623 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3622 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3621 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3620 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3619 RESERVED CVE-2012-3618 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3617 - RESERVED -CVE-2012-3616 - RESERVED +CVE-2012-3617 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3616 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3615 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3614 - RESERVED -CVE-2012-3613 - RESERVED -CVE-2012-3612 - RESERVED +CVE-2012-3614 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3613 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3612 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3611 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3610 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) @@ -3208,26 +3227,26 @@ - webkit <undetermined> CVE-2012-3608 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3607 - RESERVED -CVE-2012-3606 - RESERVED +CVE-2012-3607 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3606 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3605 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3604 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3603 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3602 - RESERVED -CVE-2012-3601 - RESERVED +CVE-2012-3602 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check +CVE-2012-3601 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3600 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3599 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> -CVE-2012-3598 - RESERVED +CVE-2012-3598 (WebKit, as used in Apple iTunes before 10.7, allows remote attackers ...) + TODO: check CVE-2012-3597 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) - webkit <undetermined> CVE-2012-3596 (WebKit, as used in Apple Safari before 6.0, allows remote attackers to ...) @@ -3418,9 +3437,11 @@ - linux <unfixed> - linux-2.6 <not-affected> (Introduced in 3.1) CVE-2012-3519 (routerlist.c in Tor before 0.2.2.38 uses a different amount of time ...) + {DSA-2548-1} - tor 0.2.3.20-rc-1 (low) [squeeze] - tor <no-dsa> (Will be fixed in stable-proposed-updates) CVE-2012-3518 (The networkstatus_parse_vote_from_string function in routerparse.c in ...) + {DSA-2548-1} - tor 0.2.3.20-rc-1 (low) [squeeze] - tor <no-dsa> (Will be fixed in stable-proposed-updates) CVE-2012-3517 (Use-after-free vulnerability in dns.c in Tor before 0.2.2.38 might ...) _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits