/[secure-testing]/data/ospu-candidates.txt
ViewVC logotype

Diff of /data/ospu-candidates.txt

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

revision 7986 by jmm-guest, Sun Jan 20 12:11:17 2008 UTC revision 12571 by derevko-guest, Tue Aug 11 20:45:32 2009 UTC
# Line 5  and get in contact with debian-release@l Line 5  and get in contact with debian-release@l
5    
6  --  --
7    
8  audacity (CVE-2007-6061)  asterisk (CVE-2009-0041)
9  http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=453283  #513413
10    notified maintainer
11    
12    CVE-2008-3903
13    #522528
14  notified maintainer  notified maintainer
15    
16  --  --
17    
18  balsa (CVE-2007-5007)  avahi (CVE-2009-0758)
19  http://bugzilla.gnome.org/attachment.cgi?id=95088&action=view  #517683
20  notified maintainer  notified maintainer
21    
22  --  --
23    
24  beagle (CVE-2005-4791)  bugzilla (CVE-2009-0481 to CVE-2009-0485)
25  notified maintainer  notified maintainer
26    
27  --  --
28    
29  blam (CVE-2005-4791)  compiz-fusion-plugins-main (CVE-2008-6514)
30  notified maintainer  notified maintainer
31    
32  --  --
33    
34  flac123 (CVE-2007-3507)  cron: Incomplete fix for CVE-2006-2607 (setgid() and initgroups() not checked
35    #528434
36  notified maintainer  notified maintainer
37    
38  --  --
39    
40  libapache2-mod-perl2 (CVE-2007-1349)  evolution (CVE-2009-1631)
41  http://svn.apache.org/viewvc?view=rev&revision=521584  #526409
42  #433549  notified maintainer through initial bugreport
43    
44    --
45    
46    firebird2.0 (CVE-2009-2620)
47    #539477
48    
49    --
50    
51    gnutls26 (CVE-2009-1417)
52    #531614
53    notified maintainer
54    
55    --
56    
57    kfreebsd-6
58    [freebsd Missing permission check on SIOCSIFINFO_IN6 ioctl]
59    http://security.freebsd.org/advisories/FreeBSD-SA-09:10.ipv6.asc
60    notified maintainer
61    
62    [freebsd Local information disclosure via direct pipe writes] (CVE-2009-1935)
63    http://security.freebsd.org/advisories/FreeBSD-SA-09:09.pipe.asc
64  notified maintainer  notified maintainer
65    
66  --  --
67    
68  libcdio (CVE-2007-6613)  kfreebsd-7
69  https://bugs.gentoo.org/show_bug.cgi?id=203777  [freebsd Missing permission check on SIOCSIFINFO_IN6 ioctl]
70  http://savannah.gnu.org/bugs/?21910  http://security.freebsd.org/advisories/FreeBSD-SA-09:10.ipv6.asc
71  http://lists.gnu.org/archive/html/libcdio-devel/2007-12/msg00009.html  notified maintainer
72  http://cvs.savannah.gnu.org/viewvc/libcdio/src/iso-info.c?root=libcdio&r1=1.35&r2=1.36  
73  http://cvs.savannah.gnu.org/viewvc/libcdio/src/cd-info.c?root=libcdio&r1=1.149&r2=1.150  [freebsd Local information disclosure via direct pipe writes] (CVE-2009-1935)
74  http://cvs.savannah.gnu.org/viewvc/libcdio/src/iso-info.c?root=libcdio&r1=1.36&r2=1.37  http://security.freebsd.org/advisories/FreeBSD-SA-09:09.pipe.asc
75  http://cvs.savannah.gnu.org/viewvc/libcdio/src/cd-info.c?root=libcdio&r1=1.150&r2=1.151  notified maintainer
76    
77  --  --
78    
79  libpam-ssh (CVE-2007-0844)  kvm 82-1 (CVE-2008-5714)
80  #410236  #509997
81  notified maintainer  notified maintainer
82    
83  --  --
84    
85    lcms (CVE-2009-0793)
86    notified maintainer through initial bugreport
87    
88  liferea (CVE-2005-4791)  --
89    
90    libpng (CVE-2009-2042)
91    #533676
92  notified maintainer  notified maintainer
93    
94  --  --
95    
96  lighttpd (CVE-2007-3948)  libsndfile
97  #434888  potential dos via crafted input
98  Was accidentally omitted during DSA 1362, but doesn't warrant a DSA on it's own.  #530831
99  http://trac.lighttpd.net/trac/changeset/1873?format=diff&new=1873  
100  http://trac.lighttpd.net/trac/ticket/1216  --
101    
102    libvorbis (CVE-2008-2009)
103    notified maintainer and release team
104    
105    --
106    
107    memcached (CVE-2009-1255)
108  notified maintainer  notified maintainer
109    
110  --  --
111    
112  linux-ftpd-ssl (CVE-2007-6263)  mimedecode
113  #454733  potential dos/crash due to invalid input
114    orphaned
115    #530430
116    
117    --
118    
119    mpg123 (CVE-2009-1301)
120  notified maintainer  notified maintainer
121    
122  --  --
123    
124  mecab (CVE-2007-3231)  squid (CVE-2009-0801)
125  #429174  #521053
126    
127    --
128    
129    squid3 (CVE-2009-0801)
130    #521052
131    
132    --
133    
134    stardict (CVE-2009-2260)
135    #534731
136  notified maintainer  notified maintainer
137    
138  --  --
139    
140  mldonkey (CVE-2007-4100)  net-snmp (CVE-2008-6123)
141  #435439  Noah will see to it.
142    
143    --
144    
145    openldap
146    #253838
147  notified maintainer  notified maintainer
148    
149  ---  --
150    
151    pam (CVE-2009-0579)
152    #514437
153    asked maintainer in mail
154    
155  proftpd-dfsg, proftpd (CVE-2007-2165)  --
156  update in progress  
157    pptp-linux (no CVE)
158    #523476
159    Ola will prepare a fix in a point update
160    
161  --  --
162    
163  python2.4, python2.5 (CVE-2007-4965)  slim (CVE-2009-1756)
164  http://bugs.python.org/issue1179  bug #529306
165    Maintainer notified through followup in #529306
166    
167    --
168    
169    smarty (CVE-2009-1669)
170    #529810
171    http://groups.google.com/group/smarty-svn/browse_thread/thread/b2da2e5d1ef8b462
172  notified maintainer  notified maintainer
173    
174  --  --
175    
176  slocate (CVE-2007-0227)  tau (CVE-2008-5157)
177  #411937  #506348
178  notified maintainer  notified maintainer
179    
180  --  --
181    
182  sylpheed (CVE-2007-2958)  texlive-bin (CVE-2009-1284)
183  #441854  #520920
184  http://www.colino.net/claws-mail/getpatchset.php3?ver=2.10.0cvs153 fixes the bug  https://bugzilla.redhat.com/show_bug.cgi?id=492136
185    
186    --
187    
188    udev (#462655)
189  notified maintainer  notified maintainer
190    
191  --  --
192    
193  tomboy (CVE-2005-4790)  webkit (CVE-2008-4724)
194    #520052
195    asked maintainer
196    
197    --
198    
199    xemacs21 (CVE-2008-2142)
200    bug #480877
201  notified maintainer  notified maintainer
202    
203  --  --
204    
205  vobcopy (CVE-2007-5718)  xen-3 (CVE-2008-4993)
206  bug #448319  #496367
207  notified maintainer  notified maintainer
208    
209  --  --
210    
211  zsh (CVE-2007-6209)  xfig
212  bug #454073)  25_mkstemp added in 1:3.2.5.a-1
213  notified maintainer  notified maintainer
214    
215    --
216    
217    ziproxy (CVE-2009-0804)
218    #521051

Legend:
Removed from v.7986  
changed lines
  Added in v.12571

  ViewVC Help
Powered by ViewVC 1.1.5