fedora-security/audit fc4,1.54,1.55

Mark Cox (mjc) fedora-extras-commits at redhat.com
Wed Sep 7 13:17:41 UTC 2005


Author: mjc

Update of /cvs/fedora/fedora-security/audit
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv19887

Modified Files:
	fc4 
Log Message:
Deal with some of the issues over the last couple of days, note that
where a new CVE name comes in which is for an old issue (in this case
an issue fixed in the kernel in 2.6.12) we still list which FEDORA
release fixed it, even though the FEDORA errata came out prior to the
CVE name being issued.



Index: fc4
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc4,v
retrieving revision 1.54
retrieving revision 1.55
diff -u -r1.54 -r1.55
--- fc4	5 Sep 2005 08:04:04 -0000	1.54
+++ fc4	7 Sep 2005 13:17:38 -0000	1.55
@@ -1,15 +1,24 @@
-Up to date CVE as of CVE email 20050904
-Up to date FC4 as of 20050904
+Up to date CVE as of CVE email 20050906
+Up to date FC4 as of 20050906
 
 ** are items that need attention
 
-2005-2728 ** httpd
+2005-2802 version (kernel, fixed 2.6.12) [since FEDORA-2005-510]
+2005-2801 version (kernel, fixed 2.6.11)
+2005-2800 VULNERABLE (kernel)
+2005-2798 VULNERABLE (openssh, fixed 4.2) #167446
+2005-2797 VULNERABLE (openssh, fixed 4.2) #167443
+2005-2796 backport (squid, fixed after 2.5.STABLE10) [since FEDORA-2005-851]
+2005-2794 backport (squid, fixed after 2.5.STABLE10) [since FEDORA-2005-851]
+2005-2728 VULNERABLE (httpd, fixed 2.0.55-dev) #167104
+2005-2700 VULNERABLE (httpd, fixed 2.0.55-dev) #167196
 2005-2693 backport (cvs) [since FEDORA-2005-790]
 2005-2672 VULNERABLE (lm_sensors) bz#166673
 2005-2666 ** openssh (hmm)
 2005-2558 ignore (mysql) not an issue
 2005-2499 backport (slocate) [since FEDORA-2005-770]
 2005-2496 backport (ntp, fixed 4.2.0b) ...0a-20040617-ntpd_guid.patch
+2005-2494 VULNERABLE (kdebase, fixed after 3.4.2) #166997
 2005-2491 VULNERABLE (python pcre)
 2005-2491 backport (pcre, fixed 6.2) [since FEDORA-2005-803]
 2005-2491 ignore (httpd, pcre uses system pcre)




More information about the fedora-extras-commits mailing list