/[secure-testing]/data/spu-candidates.txt
ViewVC logotype

Diff of /data/spu-candidates.txt

Parent Directory Parent Directory | Revision Log Revision Log | View Patch Patch

revision 12024 by derevko-guest, Tue Jun 2 21:03:28 2009 UTC revision 12630 by derevko-guest, Tue Aug 18 13:54:05 2009 UTC
# Line 11  notified maintainer Line 11  notified maintainer
11    
12  CVE-2008-3903  CVE-2008-3903
13  #522528  #522528
14    notified maintainer
15    
16  --  --
17    
# Line 30  notified maintainer Line 31  notified maintainer
31    
32  --  --
33    
34  coccinelle  cron: Incomplete fix for CVE-2006-2607 (setgid() and initgroups() not checked
35  http://packages.qa.debian.org/c/coccinelle/news/20090502T001704Z.html  #528434
36    notified maintainer
37    
38  --  --
39    
40  cron: Incomplete fix for CVE-2006-2607 (setgid() and initgroups() not checked  evolution (CVE-2009-1631)
41  #528434  #526409
42    notified maintainer through initial bugreport
43    
44    --
45    
46    firebird2.0 (CVE-2009-2620)
47    #539477
48    notified maintainer
49    
50  --  --
51    
52  gnutls26 (CVE-2009-1417)  gnutls26 (CVE-2009-1417)
53  #531614  #531614
54    notified maintainer
55    
56  --  --
57    
58  lcms (CVE-2009-0793)  kfreebsd-6
59  notified maintainer through initial bugreport  [freebsd Missing permission check on SIOCSIFINFO_IN6 ioctl]
60    http://security.freebsd.org/advisories/FreeBSD-SA-09:10.ipv6.asc
61    notified maintainer
62    
63    [freebsd Local information disclosure via direct pipe writes] (CVE-2009-1935)
64    http://security.freebsd.org/advisories/FreeBSD-SA-09:09.pipe.asc
65    notified maintainer
66    
67    --
68    
69    kfreebsd-7
70    [freebsd Missing permission check on SIOCSIFINFO_IN6 ioctl]
71    http://security.freebsd.org/advisories/FreeBSD-SA-09:10.ipv6.asc
72    notified maintainer
73    
74    [freebsd Local information disclosure via direct pipe writes] (CVE-2009-1935)
75    http://security.freebsd.org/advisories/FreeBSD-SA-09:09.pipe.asc
76    notified maintainer
77    
78  --  --
79    
80  kvm 82-1 (CVE-2008-5714)  kvm 82-1 (CVE-2008-5714)
81  #509997  #509997
82    notified maintainer
83    
84    --
85    
86    lcms (CVE-2009-0793)
87    notified maintainer through initial bugreport
88    
89    --
90    
91    libpam-ssh (CVE-2009-1273)
92    #535877
93    maintainer notified through initial bug report
94    
95    --
96    
97    libpng (CVE-2009-2042)
98    #533676
99    notified maintainer
100    
101    --
102    
103    libsndfile
104    potential dos via crafted input
105    #530831
106    
107  --  --
108    
# Line 60  notified maintainer and release team Line 111  notified maintainer and release team
111    
112  --  --
113    
114    memcached (CVE-2009-1255)
115    notified maintainer
116    
117    --
118    
119    mimedecode
120    potential dos/crash due to invalid input
121    orphaned
122    #530430
123    
124    --
125    
126  mpg123 (CVE-2009-1301)  mpg123 (CVE-2009-1301)
127  notified maintainer  notified maintainer
128    
129  --  --
130    
131    squid (CVE-2009-0801)
132    #521053
133    
134    --
135    
136    squid3 (CVE-2009-0801)
137    #521052
138    
139    --
140    
141    stardict (CVE-2009-2260)
142    #534731
143    notified maintainer
144    
145    --
146    
147  net-snmp (CVE-2008-6123)  net-snmp (CVE-2008-6123)
148  Noah will see to it.  Noah will see to it.
149    
# Line 72  Noah will see to it. Line 151  Noah will see to it.
151    
152  openldap  openldap
153  #253838  #253838
154    notified maintainer
155    
156  --  --
157    
# Line 87  Ola will prepare a fix in a point update Line 167  Ola will prepare a fix in a point update
167    
168  --  --
169    
170    slim (CVE-2009-1756)
171    bug #529306
172    Maintainer notified through followup in #529306
173    
174    --
175    
176  smarty (CVE-2009-1669)  smarty (CVE-2009-1669)
177  #529810  #529810
178  http://groups.google.com/group/smarty-svn/browse_thread/thread/b2da2e5d1ef8b462  http://groups.google.com/group/smarty-svn/browse_thread/thread/b2da2e5d1ef8b462
179    notified maintainer
180    
181  --  --
182    
# Line 99  notified maintainer Line 186  notified maintainer
186    
187  --  --
188    
189  tetex-bin (CVE-2009-1284)  texlive-bin (CVE-2009-1284)
190  #520920  #520920
191  https://bugzilla.redhat.com/show_bug.cgi?id=492136  https://bugzilla.redhat.com/show_bug.cgi?id=492136
192    
193  --  --
194    
195    udev (#462655)
196    notified maintainer
197    
198    --
199    
200    webkit (CVE-2008-4724)
201    #520052
202    asked maintainer
203    
204    --
205    
206  xemacs21 (CVE-2008-2142)  xemacs21 (CVE-2008-2142)
207  bug #480877  bug #480877
208  notified maintainer  notified maintainer
209    
210    xemacs21 (CVE-2009-2688)
211    #540470
212    Patches at https://bugzilla.redhat.com/show_bug.cgi?id=511994
213    notified maintainer
214    
215  --  --
216    
217  xen-3 (CVE-2008-4993)  xen-3 (CVE-2008-4993)
# Line 118  notified maintainer Line 221  notified maintainer
221  --  --
222    
223  xfig  xfig
224  25_mkstemp added in :3.2.5.a-1  25_mkstemp added in 1:3.2.5.a-1
225    notified maintainer
226    
227    --
228    
229    xscreensaver (no CVE)
230    #539699
231    
232  --  --
233    

Legend:
Removed from v.12024  
changed lines
  Added in v.12630

  ViewVC Help
Powered by ViewVC 1.1.5