/[secure-testing]/data/embedded-code-copies
ViewVC logotype

Contents of /data/embedded-code-copies

Parent Directory Parent Directory | Revision Log Revision Log


Revision 3061 - (show annotations) (download)
Thu Dec 15 18:51:01 2005 UTC (7 years, 5 months ago) by fw
File size: 2375 byte(s)
CVE-2005-4048: mplayer, gst-ffmpeg vulnerable; kino is not
CVE-2005-3392, CVE-2005-3391: PHP safe mode vulnerabilities, low impact
1 This file collects cases, where a source package embeds code from
2 other projects, without linking dynamically:
3
4 xpdf code: (some use xpdf 2, some xpdf 3)
5 gpdf
6 pdftohtml
7 kdegraphics/kpdf
8 tetex-bin (the very latest tetex-bin started to use poppler)
9 cupsys (only older releases, recent ones use xpdf-utils, it's still present in the src, though)
10 poppler
11 koffice
12 libextractor
13
14
15 zlib code: (lots of apps embed a copy, but link dynamically, but there are a few exceptions)
16 dpkg
17 rsync (somehow derived code base)
18 mozilla(?)
19 Linux kernels
20 pvpgn (links dynamically since 1.7.8-2)
21
22
23 libgadu/ekg:
24 centericq
25 gaim
26 kopete (ships the code, but links dynamically in the Debian package)
27 kadu (not packaged in Debian)
28 GNU gadu (not yet packaged in Debian)
29
30
31 xmlrpc: (which package is the "origin" of this code?)
32 drupal
33 phpgroupware
34 egroupware
35 phpwiki
36 php4 (php-pear, IIRC this was reorganized some weeks ago?)
37 tikiwiki (not packaged in Debian)
38
39
40 shtool: (affects build-time only)
41 mysql-ocaml
42 php4
43
44
45 mozilla:
46 mozilla-firefox
47 mozilla-thunderbird
48 nvu
49
50
51 xli:
52 xloadimage
53
54
55 lesstif: (beware: two different lesstif APIs supported in one package, MOTIF 1.2 discarded upstream)
56 openmotif
57 xfree86/xorg (in libxpm)
58
59
60 kerberized apps with BSD origin:
61 krb4
62 krb5
63 heimdal
64
65
66 grip: (which pkg is the origin?)
67 libcdaudio
68 grip
69 gnome-vfs (vfs2 as well?)
70
71
72 fudforum:
73 phpgroupware-fudforum
74 egroupware-fudforum
75
76 cvs:
77 gcvs (at least an additional script is included, check if there's more)
78
79 pcre:
80 all pythons
81 php4 (src included, but Debian package links dynamically)
82 analog (src included, but Debian package links dynamically)
83 libgoffice-1
84 tf5 (since 5.0beta7 the Debian package links dynamically)
85
86 tiff:
87 wxpythongtk (check, which debian pkg this is in)
88 older kdegraphics/kpdf releases < 3.3 embedded a copy
89
90
91 uudeview:
92 libconvert-uulib-perl
93
94 sqlite: (not affected by security vulnerabilities so far)
95 amarok
96
97 util-linux/mount:
98 loop-aes-utils contains code from util-linux' mount in the mount-aes-udeb
99
100 webmin:
101 usermin
102
103 sylpheed:
104 sylpheed-claws
105
106 phpsysinfo:
107 egroupware
108 phpgroupware
109
110 phpldapadmin:
111 egroupware
112
113 chmlib:
114 kchmviewer (not packaged in Debian)
115
116 libavcodec/libavformat:
117 ffmpeg
118 xine-lib
119 xvidcap (currently in NEW)
120 kino
121 gst-ffmpeg
122
123 mad MPEG decoding lib:
124 mad
125 xine-lib
126
127 libdts:
128 libdts
129 xine-lib
130
131 flac:
132 flac
133 xine-lib
134
135 liba52:
136 a52dec
137 xine-lib
138
139 libmpeg2:
140 mpeg2dec
141 xine-lib
142
143 curl:
144 wget (code for NTLM authentication)

  ViewVC Help
Powered by ViewVC 1.1.5