[Fedora-security-commits] fedora-security/audit f8, 1.147, 1.148 f9, 1.136, 1.137 fc7, 1.303, 1.304

fedora-security-commits at redhat.com fedora-security-commits at redhat.com
Tue Mar 4 09:48:45 UTC 2008


Author: lkundrak

Update of /cvs/fedora/fedora-security/audit
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv25417

Modified Files:
	f8 f9 fc7 
Log Message:
smarty, drupal, mediawiki, lighttpd


Index: f8
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/f8,v
retrieving revision 1.147
retrieving revision 1.148
diff -u -r1.147 -r1.148
--- f8	3 Mar 2008 09:57:27 -0000	1.147
+++ f8	4 Mar 2008 09:48:15 -0000	1.148
@@ -10,11 +10,15 @@
 GENERIC-MAP-NOMATCH VULNERABLE (comix) multiple issues tracked via #430635
 GENERIC-MAP-NOMATCH fixed (wyrd) #433720 [since FEDORA-2008-1963] 
 GENERIC-MAP-NOMATCH VULNERABLE (viewvc) #435349 
+GENERIC-MAP-NOMATCH VULNERABLE (php-Smarty) #435811 
+GENERIC-MAP-NOMATCH VULNERABLE (drupal) #435815 
+GENERIC-MAP-NOMATCH ignore (mediawiki) 1.11.2 security fix applies only for 1.11 we never shipped
+CVE-2008-1111 VULNERABLE (lighttpd) #435807 
 CVE-2008-1110 version (xine-lib, fixed 1.1.10) [since FEDORA-2008-1043]
 CVE-2008-1072 VULNERABLE (wireshark) #435485 
 CVE-2008-1071 VULNERABLE (wireshark) #435485 
 CVE-2008-1070 VULNERABLE (wireshark) #435485 
-**CVE-2008-0983 VULNERABLE (lighttpd) 
+CVE-2008-0983 VULNERABLE (lighttpd) #435807 
 CVE-2008-0932 fixed (sword) #433724 [since FEDORA-2008-1922] why? diatheke.pl is not shipped...
 CVE-2008-0928 fixed (qemu) #433561 [since FEDORA-2008-2001] 
 CVE-2008-0928 fixed (kvm) #433564 [since FEDORA-2008-1973] 


Index: f9
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/f9,v
retrieving revision 1.136
retrieving revision 1.137
diff -u -r1.136 -r1.137
--- f9	3 Mar 2008 09:57:27 -0000	1.136
+++ f9	4 Mar 2008 09:48:15 -0000	1.137
@@ -10,11 +10,15 @@
 GENERIC-MAP-NOMATCH VULNERABLE (comix) multiple issues tracked via #430635
 GENERIC-MAP-NOMATCH VULNERABLE (wyrd) #433722 
 GENERIC-MAP-NOMATCH fixed (inkscape) #432807  [since inkscape-0.45.1+0.46pre1-4.fc9]
+GENERIC-MAP-NOMATCH VULNERABLE (php-Smarty) #435813 
+GENERIC-MAP-NOMATCH VULNERABLE (drupal) #435817 
+GENERIC-MAP-NOMATCH ignore (mediawiki) 1.11.2 security fix applies only for 1.11 we never shipped
+CVE-2008-1111 VULNERABLE (lighttpd) #435809 
 CVE-2008-1110 version (xine-lib, fixed 1.1.10) [since xine-lib-1.1.10-2.fc9]
 CVE-2008-1072 VULNERABLE (wireshark) #435488 
 CVE-2008-1071 VULNERABLE (wireshark) #435488 
 CVE-2008-1070 VULNERABLE (wireshark) #435488 
-**CVE-2008-0983 VULNERABLE (lighttpd) 
+CVE-2008-0983 VULNERABLE (lighttpd) #435809 
 CVE-2008-0932 backport (sword) #433726 [since sword-1.5.10-3.fc9] why? diatheke.pl is not shipped...
 CVE-2008-0928 backport (qemu) #433563 [since qemu-0.9.1-3.fc9]
 CVE-2008-0928 backport (kvm) #433566 [since kvm-61-2.fc9]


Index: fc7
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc7,v
retrieving revision 1.303
retrieving revision 1.304
diff -u -r1.303 -r1.304
--- fc7	3 Mar 2008 09:57:27 -0000	1.303
+++ fc7	4 Mar 2008 09:48:15 -0000	1.304
@@ -11,11 +11,15 @@
 GENERIC-MAP-NOMATCH VULNERABLE (comix) multiple issues tracked via #430635
 GENERIC-MAP-NOMATCH fixed (wyrd) #433721 [since FEDORA-2008-1986] 
 GENERIC-MAP-NOMATCH fixed (viewvc) #435349 [since FEDORA-2008-2159] 
+GENERIC-MAP-NOMATCH VULNERABLE (php-Smarty) #435812 
+GENERIC-MAP-NOMATCH VULNERABLE (drupal) #435816 
+GENERIC-MAP-NOMATCH ignore (mediawiki) 1.11.2 security fix applies only for 1.11 we never shipped
+CVE-2008-1111 VULNERABLE (lighttpd) #435808 
 CVE-2008-1110 version (xine-lib, fixed 1.1.10) [since FEDORA-2008-1047]
 CVE-2008-1072 VULNERABLE (wireshark) #435487 
 CVE-2008-1071 VULNERABLE (wireshark) #435487 
 CVE-2008-1070 VULNERABLE (wireshark) #435487 
-**CVE-2008-0983 VULNERABLE (lighttpd) 
+CVE-2008-0983 VULNERABLE (lighttpd) #435808 
 CVE-2008-0932 fixed (sword) #433725 [since FEDORA-2008-1951] why? diatheke.pl is not shipped...
 CVE-2008-0928 fixed (qemu) #433562 [since FEDORA-2008-1995] 
 CVE-2008-0928 fixed (kvm) #433565 [since FEDORA-2008-1993] 




More information about the Fedora-security-commits mailing list