[Fedora-security-commits] fedora-security/audit f8, 1.111, 1.112 f9, 1.102, 1.103 fc7, 1.267, 1.268

fedora-security-commits at redhat.com fedora-security-commits at redhat.com
Tue Feb 5 14:21:21 UTC 2008


Author: thoger

Update of /cvs/fedora/fedora-security/audit
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv23259/audit

Modified Files:
	f8 f9 fc7 
Log Message:
add xine-lib, mailman, wordpress
note some rawhide updates



Index: f8
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/f8,v
retrieving revision 1.111
retrieving revision 1.112
diff -u -r1.111 -r1.112
--- f8	5 Feb 2008 11:17:12 -0000	1.111
+++ f8	5 Feb 2008 14:20:51 -0000	1.112
@@ -12,10 +12,13 @@
 GENERIC-MAP-NOMATCH fixed (deluge, fixed 0.5.8.3) [since FEDORA-2008-1287]
 GENERIC-MAP-NOMATCH fixed (rb_libtorrent) [since FEDORA-2008-1198]
 GENERIC-MAP-NOMATCH VULNERABLE (gnumeric, fixed 1.8.1) #431228 SA28725
+GENERIC-MAP-NOMATCH VULNERABLE (wordpress, fixed 2.3.3) #431549 
+CVE-2008-0564 VULNERABLE (mailman, fixed 2.1.10b1) 
 CVE-2008-0554 version (netpbm, fixed 10.27) 
 CVE-2008-0553 VULNERABLE (perl-Tk) #431532 
 CVE-2008-0553 VULNERABLE (tk, fixed 8.5.1) 
 CVE-2008-0544 fixed (SDL_image) #430694 [since FEDORA-2008-1208] ILBM overflow
+CVE-2008-0486 VULNERABLE (xine-lib) #431543 
 CVE-2008-0460 VULNERABLE (mediawiki) #430288 
 CVE-2008-0404 fixed (mantis) #429552 [since FEDORA-2008-0796] 
 CVE-2008-0386 fixed (xdg-utils) #429513 [since FEDORA-2008-1015] 


Index: f9
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/f9,v
retrieving revision 1.102
retrieving revision 1.103
diff -u -r1.102 -r1.103
--- f9	5 Feb 2008 11:17:12 -0000	1.102
+++ f9	5 Feb 2008 14:20:51 -0000	1.103
@@ -12,10 +12,13 @@
 GENERIC-MAP-NOMATCH version (deluge, fixed 0.5.8.3) [since deluge-0.5.8.3-1.fc9]
 GENERIC-MAP-NOMATCH backport (rb_libtorrent) [since rb_libtorrent-0.12-3.fc9]
 GENERIC-MAP-NOMATCH version (gnumeric, fixed 1.8.1) [since gnumeric-1.8.1-1.fc9] SA28725
+GENERIC-MAP-NOMATCH VULNERABLE (wordpress, fixed 2.3.3) #431551 
+CVE-2008-0564 backport (mailman, fixed 2.1.10b1) [since mailman-2.1.9-10.fc9]
 CVE-2008-0554 version (netpbm, fixed 10.27) 
-CVE-2008-0553 VULNERABLE (perl-Tk) #431529 
+CVE-2008-0553 backport (perl-Tk) #431529 [since perl-Tk-804.028-3.fc9]
 CVE-2008-0553 backport (tk, fixed 8.5.1) [since tk-8.5.0-4.fc9]
 CVE-2008-0544 backport (SDL_image) #430696 ILBM overflow [since SDL_image-1.2.6-5.fc9]
+CVE-2008-0486 VULNERABLE (xine-lib) #431544 
 CVE-2008-0460 VULNERABLE (mediawiki) #430289 
 CVE-2008-0404 fixed (mantis) #429552 [since mantis-1.1.1-1.fc9]
 CVE-2008-0386 fixed (xdg-utils) #429513 [since xdg-utils-1_0_2-4_fc9]
@@ -38,11 +41,11 @@
 CVE-2008-0171 backport (boost) #428976 [since boost-1.34.1-7.fc9]
 CVE-2008-0128 VULNERABLE (tomcat5) #429905 
 CVE-2008-0123 fixed (moodle) #428731 [since moodle-1.8.4-1.fc9]
-CVE-2008-0122 VULNERABLE (bind) #429534
+CVE-2008-0122 backport (bind) #429534 [since bind-9.5.0-24.b1.fc9]
 CVE-2008-0095 version (asterisk, fixed 1.4.17) AST-2008-001 [since asterisk-1.4.17-1.fc9]
 CVE-2008-0008 backport (pulseaudio) #425481 [since pulseaudio-0.9.8-5.fc9]
 CVE-2008-0006 backport (libXfont) #429133 [since libXfont-1.3.1-3.fc9]
-CVE-2008-0005 VULNERABLE (httpd, fixed 2.2.7) #427984 
+CVE-2008-0005 version (httpd, fixed 2.2.8) #427984 [since httpd-2.2.8-2]
 CVE-2008-0003 version (tog-pegasus, fixed 2.7.0) 
 CVE-2007-6698 version (openldap, fixed 2.3.36) 
 CVE-2007-6697 backport (SDL_image, fixed 1.2.7) #430238 [since SDL_image-1.2.6-4.fc9]
@@ -77,11 +80,11 @@
 CVE-2007-6428 backport (xorg-x11-server, fixed 1.4.1) #429127 [since xorg-x11-server-1.4.99.1-0.17.20080107.fc9]
 CVE-2007-6427 backport (xorg-x11-server, fixed 1.4.1) #429127 [since xorg-x11-server-1.4.99.1-0.17.20080107.fc9]
 CVE-2007-6423 ignore (httpd) can not be reproduced by upstream
-CVE-2007-6422 VULNERABLE (httpd, fixed 2.2.7) #427984 
-CVE-2007-6421 VULNERABLE (httpd, fixed 2.2.7) #427984 
+CVE-2007-6422 version (httpd, fixed 2.2.8) #427984 [since httpd-2.2.8-2]
+CVE-2007-6421 version (httpd, fixed 2.2.8) #427984 [since httpd-2.2.8-2]
 CVE-2007-6420 ignore (httpd) wontfix by upstream
 CVE-2007-6415 VULNERABLE (scponly, fixed 4.8) 
-CVE-2007-6388 VULNERABLE (httpd, fixed 2.2.7) #427984 
+CVE-2007-6388 version (httpd, fixed 2.2.8) #427984 [since httpd-2.2.8-2]
 CVE-2007-6337 version (clamav, fixed 0.92) #426213 [since clamav-0.92-3.fc9]
 CVE-2007-6336 version (clamav, fixed 0.92) #426213 [since clamav-0.92-3.fc9]
 CVE-2007-6335 version (clamav, fixed 0.92) #426213 [since clamav-0.92-3.fc9]
@@ -192,7 +195,7 @@
 CVE-2007-5079 VULNERABLE (gdm) #363041 Red Hat specific problem
 CVE-2007-5037 version (inotify-tools, fixed 3.11) #299771
 CVE-2007-5007 version (balsa, before 2.3.20) #297601
-CVE-2007-5000 VULNERABLE (httpd, fixed 2.2.7) #427984 
+CVE-2007-5000 version (httpd, fixed 2.2.8) #427984 [since httpd-2.2.8-2]
 CVE-2007-4999 version (pidgin, fixed 2.2.2)
 CVE-2007-4990 version (xorg-x11-xfs, fixed 1.0.5)
 CVE-2007-4829 VULNERABLE (perl-Archive-Tar, not fixed upstream) #364291


Index: fc7
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc7,v
retrieving revision 1.267
retrieving revision 1.268
diff -u -r1.267 -r1.268
--- fc7	5 Feb 2008 11:17:12 -0000	1.267
+++ fc7	5 Feb 2008 14:20:51 -0000	1.268
@@ -13,10 +13,13 @@
 GENERIC-MAP-NOMATCH fixed (deluge, fixed 0.5.8.3) [since FEDORA-2008-1198]
 GENERIC-MAP-NOMATCH fixed (rb_libtorrent) [since FEDORA-2008-1245]
 GENERIC-MAP-NOMATCH VULNERABLE (gnumeric, fixed 1.8.1) #431228 SA28725
+GENERIC-MAP-NOMATCH VULNERABLE (wordpress, fixed 2.3.3) #431550 
+CVE-2008-0564 VULNERABLE (mailman, fixed 2.1.10b1) 
 CVE-2008-0554 version (netpbm, fixed 10.27) 
 CVE-2008-0553 VULNERABLE (perl-Tk) #431531 
 CVE-2008-0553 VULNERABLE (tk, fixed 8.5.1) 
 CVE-2008-0544 fixed (SDL_image) #430695 [since FEDORA-2008-1208] ILBM overflow
+CVE-2008-0486 VULNERABLE (xine-lib) #431542 
 CVE-2008-0460 VULNERABLE (mediawiki) #430287 
 CVE-2008-0404 fixed (mantis) #429552 [since FEDORA-2008-0796] 
 CVE-2008-0386 fixed (xdg-utils) #429513 [since FEDORA-2008-1015] 




More information about the Fedora-security-commits mailing list