Author: thoger
Update of /cvs/fedora/fedora-security/audit In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv30603/audit
Modified Files: fc6 fc7 Log Message: fedora updates
Index: fc6 =================================================================== RCS file: /cvs/fedora/fedora-security/audit/fc6,v retrieving revision 1.284 retrieving revision 1.285 diff -u -r1.284 -r1.285 --- fc6 29 Oct 2007 12:38:04 -0000 1.284 +++ fc6 30 Oct 2007 17:10:19 -0000 1.285 @@ -5,7 +5,7 @@ # (mozilla) = (firefox, seamonkey, thunderbird, yelp, devhelp, galeon, liferea. epiphany)
# Up to date CVE as of CVE email 20071015 -# Up to date FC6 as of 20071025 +# Up to date FC6 as of 20071029
CVE-2007-5340 VULNERABLE (mozilla) ff 2.0.0.8, tb 2.0.0.6, sm 1.1.5 CVE-2007-5339 VULNERABLE (mozilla) ff 2.0.0.8, tb 2.0.0.6, sm 1.1.5
Index: fc7 =================================================================== RCS file: /cvs/fedora/fedora-security/audit/fc7,v retrieving revision 1.156 retrieving revision 1.157 diff -u -r1.156 -r1.157 --- fc7 29 Oct 2007 18:17:05 -0000 1.156 +++ fc7 30 Oct 2007 17:10:19 -0000 1.157 @@ -6,7 +6,7 @@ # A couple of first F7 updates were marked as FEDORA-2007-0001
# Up to date CVE as of CVE email 20071015 -# Up to date FC7 as of 20071025 +# Up to date FC7 as of 20071029
CVE-NOID VULNERABLE (Django) #357051 CVE-2007-5626 ignore (bacula) known, documented limitation @@ -57,7 +57,7 @@ CVE-2007-4993 backport (xen) [since FEDORA-2007-2270] CVE-2007-4990 VULNERABLE (xorg-x11-xfs, fixed 1.0.5) CVE-2007-4974 backport (libsndfile) #296221 [since FEDORA-2007-2236] -CVE-2007-4965 VULNERABLE (python) imageop module heap overflow +CVE-2007-4965 backport (python) imageop module heap overflow [since FEDORA-2007-2663] CVE-2007-4924 version (opal, fixed 2.2.10) #297551 [since FEDORA-2007-2245] CVE-2007-4897 version (opal, fixed 2.2.9) CVE-2007-4894 version (wordpress, fixed 2.2.3) [since FEDORA-2007-2143] @@ -100,6 +100,8 @@ CVE-2007-4533 backport (vavoom) #256621 [since FEDORA-2007-1977] CVE-2007-4532 backport (vavoom) #256621 [since FEDORA-2007-1977] CVE-2007-4510 version (clamav, fixed 0.91.2) #253780 [since FEDORA-2007-2050] +CVE-2007-4476 VULNERABLE (cpio) +CVE-2007-4476 backport (tar) [since FEDORA-2007-2673] CVE-2007-4465 version (httpd) [since FEDORA-2007-2214] CVE-2007-4462 version (po4a) #253541 [since FEDORA-2007-1763] CVE-2007-4460 backport (id3lib) #253553 [since FEDORA-2007-1774] @@ -278,7 +280,7 @@ *CVE-2007-2452 ** (locate) CVE-2007-2450 VULNERABLE (tomcat5) #244810 CVE-2007-2449 VULNERABLE (tomcat5) #244810 -CVE-2007-2448 VULNERABLE (subversion, fixed 1.4.4) #243856 +CVE-2007-2448 version (subversion, fixed 1.4.4) #243856 [since FEDORA-2007-2635] *CVE-2007-2447 ** (samba) *CVE-2007-2446 ** (samba) CVE-2007-2445 version (libpng10, fixed 1.0.25) #240398
security-commits@lists.fedoraproject.org