[Fedora-security-commits] fedora-security/audit f8, 1.114, 1.115 f9, 1.105, 1.106 fc7, 1.270, 1.271

fedora-security-commits at redhat.com fedora-security-commits at redhat.com
Fri Feb 8 14:47:45 UTC 2008


Author: thoger

Update of /cvs/fedora/fedora-security/audit
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv30758/audit

Modified Files:
	f8 f9 fc7 
Log Message:
add openldap, moin, turba
note some CVE ids
get updates
add fixed in for xine-lib



Index: f8
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/f8,v
retrieving revision 1.114
retrieving revision 1.115
diff -u -r1.114 -r1.115
--- f8	6 Feb 2008 13:14:35 -0000	1.114
+++ f8	8 Feb 2008 14:47:15 -0000	1.115
@@ -9,18 +9,21 @@
 
 GENERIC-MAP-NOMATCH VULNERABLE (comix) multiple issues tracked via #430635
 GENERIC-MAP-NOMATCH version (xine-lib, fixed 1.1.10) [since FEDORA-2008-1043]
-GENERIC-MAP-NOMATCH fixed (deluge, fixed 0.5.8.3) [since FEDORA-2008-1287]
-GENERIC-MAP-NOMATCH fixed (rb_libtorrent) [since FEDORA-2008-1198]
 GENERIC-MAP-NOMATCH VULNERABLE (gnumeric, fixed 1.8.1) #431228 SA28725
-GENERIC-MAP-NOMATCH VULNERABLE (wordpress, fixed 2.3.3) #431549 
 GENERIC-MAP-NOMATCH VULNERABLE (pcre, fixed 7.6) #431677 
 GENERIC-MAP-NOMATCH VULNERABLE (glib2) #431679 regex issue fixed in pcre-7.6
+GENERIC-MAP-NOMATCH VULNERABLE (moin) #432019 
+GENERIC-MAP-NOMATCH VULNERABLE (turba) #432027 
+CVE-2008-0664 VULNERABLE (wordpress, fixed 2.3.3) #431549 
+CVE-2008-0658 VULNERABLE (openldap) #432012 
+CVE-2008-0646 fixed (deluge, fixed 0.5.8.3) [since FEDORA-2008-1287]
+CVE-2008-0646 fixed (rb_libtorrent) [since FEDORA-2008-1198]
 CVE-2008-0564 VULNERABLE (mailman, fixed 2.1.10b1) 
 CVE-2008-0554 version (netpbm, fixed 10.27) 
 CVE-2008-0553 VULNERABLE (perl-Tk) #431532 
 CVE-2008-0553 VULNERABLE (tk, fixed 8.5.1) 
 CVE-2008-0544 fixed (SDL_image) #430694 [since FEDORA-2008-1208] ILBM overflow
-CVE-2008-0486 VULNERABLE (xine-lib) #431543 
+CVE-2008-0486 VULNERABLE (xine-lib, fixed 1.1.10.1) #431543 
 CVE-2008-0460 VULNERABLE (mediawiki) #430288 
 CVE-2008-0404 fixed (mantis) #429552 [since FEDORA-2008-0796] 
 CVE-2008-0386 fixed (xdg-utils) #429513 [since FEDORA-2008-1015] 


Index: f9
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/f9,v
retrieving revision 1.105
retrieving revision 1.106
diff -u -r1.105 -r1.106
--- f9	6 Feb 2008 13:14:35 -0000	1.105
+++ f9	8 Feb 2008 14:47:15 -0000	1.106
@@ -9,18 +9,21 @@
 
 GENERIC-MAP-NOMATCH VULNERABLE (comix) multiple issues tracked via #430635
 GENERIC-MAP-NOMATCH version (xine-lib, fixed 1.1.10) [since xine-lib-1.1.10-2.fc9]
-GENERIC-MAP-NOMATCH version (deluge, fixed 0.5.8.3) [since deluge-0.5.8.3-1.fc9]
-GENERIC-MAP-NOMATCH backport (rb_libtorrent) [since rb_libtorrent-0.12-3.fc9]
 GENERIC-MAP-NOMATCH version (gnumeric, fixed 1.8.1) [since gnumeric-1.8.1-1.fc9] SA28725
-GENERIC-MAP-NOMATCH VULNERABLE (wordpress, fixed 2.3.3) #431551 
 GENERIC-MAP-NOMATCH VULNERABLE (pcre, fixed 7.6) #431678 
-GENERIC-MAP-NOMATCH VULNERABLE (glib2) #431680 regex issue fixed in pcre-7.6
+GENERIC-MAP-NOMATCH version (glib2) #431680 regex issue fixed in pcre-7.6 [since glib2-2.15.4-2.fc9]
+GENERIC-MAP-NOMATCH VULNERABLE (moin) #432021 
+GENERIC-MAP-NOMATCH VULNERABLE (turba) #432027
+CVE-2008-0664 VULNERABLE (wordpress, fixed 2.3.3) #431551 
+CVE-2008-0658 VULNERABLE (openldap) #432014 
+CVE-2008-0646 version (deluge, fixed 0.5.8.3) [since deluge-0.5.8.3-1.fc9]
+CVE-2008-0646 backport (rb_libtorrent) [since rb_libtorrent-0.12-3.fc9]
 CVE-2008-0564 backport (mailman, fixed 2.1.10b1) [since mailman-2.1.9-10.fc9]
 CVE-2008-0554 version (netpbm, fixed 10.27) 
 CVE-2008-0553 backport (perl-Tk) #431529 [since perl-Tk-804.028-3.fc9]
 CVE-2008-0553 backport (tk, fixed 8.5.1) [since tk-8.5.0-4.fc9]
 CVE-2008-0544 backport (SDL_image) #430696 ILBM overflow [since SDL_image-1.2.6-5.fc9]
-CVE-2008-0486 VULNERABLE (xine-lib) #431544 
+CVE-2008-0486 VULNERABLE (xine-lib, fixed 1.1.10.1) #431544 
 CVE-2008-0460 VULNERABLE (mediawiki) #430289 
 CVE-2008-0404 fixed (mantis) #429552 [since mantis-1.1.1-1.fc9]
 CVE-2008-0386 fixed (xdg-utils) #429513 [since xdg-utils-1_0_2-4_fc9]


Index: fc7
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc7,v
retrieving revision 1.270
retrieving revision 1.271
diff -u -r1.270 -r1.271
--- fc7	6 Feb 2008 13:14:35 -0000	1.270
+++ fc7	8 Feb 2008 14:47:15 -0000	1.271
@@ -10,17 +10,20 @@
 
 GENERIC-MAP-NOMATCH VULNERABLE (comix) multiple issues tracked via #430635
 GENERIC-MAP-NOMATCH version (xine-lib, fixed 1.1.10) [since FEDORA-2008-1047]
-GENERIC-MAP-NOMATCH fixed (deluge, fixed 0.5.8.3) [since FEDORA-2008-1198]
-GENERIC-MAP-NOMATCH fixed (rb_libtorrent) [since FEDORA-2008-1245]
-GENERIC-MAP-NOMATCH VULNERABLE (gnumeric, fixed 1.8.1) #431228 SA28725
-GENERIC-MAP-NOMATCH VULNERABLE (wordpress, fixed 2.3.3) #431550 
+GENERIC-MAP-NOMATCH fixed (gnumeric, fixed 1.8.1) #431228 [since FEDORA-2008-1313] SA28725
 GENERIC-MAP-NOMATCH VULNERABLE (pcre, fixed 7.6) #431676 
+GENERIC-MAP-NOMATCH VULNERABLE (moin) #432020 
+GENERIC-MAP-NOMATCH VULNERABLE (turba) #432027
+CVE-2008-0664 VULNERABLE (wordpress, fixed 2.3.3) #431550 
+CVE-2008-0658 VULNERABLE (openldap) #432013 
+CVE-2008-0646 fixed (deluge, fixed 0.5.8.3) [since FEDORA-2008-1198]
+CVE-2008-0646 fixed (rb_libtorrent) [since FEDORA-2008-1245]
 CVE-2008-0564 VULNERABLE (mailman, fixed 2.1.10b1) 
 CVE-2008-0554 version (netpbm, fixed 10.27) 
-CVE-2008-0553 VULNERABLE (perl-Tk) #431531 
+CVE-2008-0553 fixed (perl-Tk) #431531 [since FEDORA-2008-1384] 
 CVE-2008-0553 VULNERABLE (tk, fixed 8.5.1) 
 CVE-2008-0544 fixed (SDL_image) #430695 [since FEDORA-2008-1208] ILBM overflow
-CVE-2008-0486 VULNERABLE (xine-lib) #431542 
+CVE-2008-0486 VULNERABLE (xine-lib, fixed 1.1.10.1) #431542 
 CVE-2008-0460 VULNERABLE (mediawiki) #430287 
 CVE-2008-0404 fixed (mantis) #429552 [since FEDORA-2008-0796] 
 CVE-2008-0386 fixed (xdg-utils) #429513 [since FEDORA-2008-1015] 
@@ -49,7 +52,7 @@
 CVE-2008-0006 fixed (libXfont) #429131 [since FEDORA-2008-0891] 
 CVE-2008-0005 VULNERABLE (httpd, fixed 2.2.8) #427983 
 CVE-2008-0003 fixed (tog-pegasus, fixed 2.7.0) #427828 [since FEDORA-2008-0506] 
-CVE-2007-6698 VULNERABLE (openldap, fixed 2.3.36) #431409 
+CVE-2007-6698 fixed (openldap, fixed 2.3.36) #431409 [since FEDORA-2008-1307] 
 CVE-2007-6697 fixed (SDL_image, fixed 1.2.7) #430239 [since FEDORA-2008-1231] 
 CVE-2007-6693 version (gallery2, fixed 2.2.4) [since FEDORA-2007-4777] 
 CVE-2007-6692 version (gallery2, fixed 2.2.4) [since FEDORA-2007-4777] 
@@ -192,13 +195,13 @@
 CVE-2007-5395 version (link-grammar) #372341 [since FEDORA-2007-3339]
 CVE-2007-5393 backport (xpdf) #372461 [since FEDORA-2007-3031]
 CVE-2007-5393 backport (cups) [since FEDORA-2007-3100]
-CVE-2007-5393 VULNERABLE (poppler) #372501
+CVE-2007-5393 VULNERABLE (poppler) #372501 
 CVE-2007-5393 backport (kdegraphics) #372561 [since FEDORA-2007-2985]
 CVE-2007-5393 backport (koffice) #372591 [since FEDORA-2007-3059]
 CVE-2007-5393 backport (tetex) #372651 [since FEDORA-2007-3390]
 CVE-2007-5392 backport (xpdf) #372461 [since FEDORA-2007-3031]
 CVE-2007-5392 backport (cups) [since FEDORA-2007-3100]
-CVE-2007-5392 VULNERABLE (poppler) #372501
+CVE-2007-5392 VULNERABLE (poppler) #372501 
 CVE-2007-5392 backport (kdegraphics) #372561 [since FEDORA-2007-2985]
 CVE-2007-5392 backport (koffice) #372591 [since FEDORA-2007-3059]
 CVE-2007-5392 backport (tetex) #372651 [since FEDORA-2007-3390]
@@ -304,7 +307,7 @@
 CVE-2007-4357 ignore (firefox) status bar can be overwrittten
 CVE-2007-4352 backport (xpdf) #372461 [since FEDORA-2007-3031]
 CVE-2007-4352 backport (cups) [since FEDORA-2007-3100]
-CVE-2007-4352 VULNERABLE (poppler) #372501
+CVE-2007-4352 VULNERABLE (poppler) #372501 
 CVE-2007-4352 backport (kdegraphics) #372561 [since FEDORA-2007-2985]
 CVE-2007-4352 backport (koffice) #372591 [since FEDORA-2007-3059]
 CVE-2007-4352 backport (tetex) #372651 [since FEDORA-2007-3390]
@@ -401,7 +404,7 @@
 CVE-2007-3388 backport (qt, fixed qt-3.3.8-20070727) patch available: 170529.diff [since FEDORA-2007-2216]
 CVE-2007-3387 version (xpdf, fixed 3.02pl1) [since FEDORA-2007-1383]
 CVE-2007-3387 backport (tetex) #251514 [since FEDORA-2007-1547]
-CVE-2007-3387 VULNERABLE (poppler) #251512
+CVE-2007-3387 VULNERABLE (poppler) #251512 
 CVE-2007-3387 backport (kdegraphics) #251509 [since FEDORA-2007-1594]
 CVE-2007-3387 backport (koffice) #251522 [since FEDORA-2007-1614]
 CVE-2007-3387 backport (cups) #251518 [since FEDORA-2007-1541]




More information about the Fedora-security-commits mailing list