fedora-security/audit fc5,1.446,1.447 fc6,1.200,1.201

Lubomir Kundrak (lkundrak) fedora-extras-commits at redhat.com
Mon Feb 5 18:09:36 UTC 2007


Author: lkundrak

Update of /cvs/fedora/fedora-security/audit
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv12081

Modified Files:
	fc5 fc6 
Log Message:
bind, makeinfo, libsoup, khtml



Index: fc5
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc5,v
retrieving revision 1.446
retrieving revision 1.447
diff -u -r1.446 -r1.447
--- fc5	2 Feb 2007 19:37:35 -0000	1.446
+++ fc5	5 Feb 2007 18:09:34 -0000	1.447
@@ -3,12 +3,9 @@
 
 ** are items that need attention
 
-CVE-2007-0537 VULNERABLE (kdebase) #225420
-CVE-2007-0459 VULNERABLE (wireshark, fixed 0.99.5) #227140
-CVE-2007-0458 VULNERABLE (wireshark, fixed 0.99.5) #227140
-CVE-2007-0457 VULNERABLE (wireshark, fixed 0.99.5) #227140
-CVE-2007-0456 VULNERABLE (wireshark, fixed 0.99.5) #227140
-CVE-2007-0455 VULNERABLE (gd) #224610
+CVE-2007-0650 ** tetex
+CVE-2007-0494 version (bind, fixed 9.3.4) #225268 [since FEDORA-2007-164]
+CVE-2007-0493 version (bind, fixed 9.3.4) #224443 [since FEDORA-2007-164]
 CVE-2007-0247 backport(squid, fixed 2.6.STABLE7) #222883 [since FEDORA-2007-092]
 CVE-2007-0235 VULNERABLE (libgtop2) #222637 not sure, will triage
 CVE-2007-0104 ignore (poppler) only client DoS
@@ -20,6 +17,7 @@
 CVE-2006-6772 backport (w3m) #221484 [since FEDORA-2007-078]
 CVE-2006-6719 backport (wget) #221469 [since FEDORA-2007-037]
 CVE-2006-6698 VULNERABLE (GConf2) #219280
+CVE-2006-6660 ignore (kdelibs) client Dos only, not reproducible
 CVE-2006-6385 ignore (kernel) windows only
 CVE-2006-6383 ignore (php) safe mode isn't safe
 CVE-2006-6333 ignore (kernel, 2.6.19 only)


Index: fc6
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc6,v
retrieving revision 1.200
retrieving revision 1.201
diff -u -r1.200 -r1.201
--- fc6	2 Feb 2007 19:37:35 -0000	1.200
+++ fc6	5 Feb 2007 18:09:34 -0000	1.201
@@ -3,7 +3,10 @@
 
 ** are items that need attention
 
+CVE-2007-0650 VULNERABLE (tetex) #225491
 CVE-2007-0537 VULNERABLE (kdebase) #225420
+CVE-2007-0494 version (bind, fixed 9.3.4) #225268 [since FEDORA-2007-147]
+CVE-2007-0493 version (bind, fixed 9.3.4) #224443 [since FEDORA-2007-147]
 CVE-2007-0459 VULNERABLE (wireshark, fixed 0.99.5) #227140
 CVE-2007-0458 VULNERABLE (wireshark, fixed 0.99.5) #227140
 CVE-2007-0457 VULNERABLE (wireshark, fixed 0.99.5) #227140
@@ -21,6 +24,7 @@
 CVE-2006-6772 backport (w3m) #221484 [since FEDORA-2007-077]
 CVE-2006-6719 backport (wget) #221469 [since FEDORA-2007-043]
 CVE-2006-6698 VULNERABLE (GConf2) #219280
+CVE-2006-6660 ignore (kdelibs) client Dos only, not reproducible
 CVE-2006-6385 ignore (kernel) windows only
 CVE-2006-6383 ignore (php) safe mode isn't safe
 CVE-2006-6333 version (kernel, fixed 2.6.19.1) [since FEDORA-2007-058]
@@ -51,7 +55,7 @@
 CVE-2006-5974 ignore (fetchmail, fixed 6.3.6) only 6.3.5
 CVE-2006-5973 VULNERABLE (dovecot, fixed 1.0.rc15) #216508
 CVE-2006-5925 backport (elinks) [since FEDORA-2006-1278] but was never vulneable as didn't have smbclient support
-CVE-2006-5876 VULNERABLE (libsoup) #223144
+CVE-2006-5876 version (libsoup) #223144 [since FEDORA-2007-109]
 CVE-2006-5871 version (kernel, fixed 2.6.10)
 CVE-2006-5868 VULNERABLE (ImageMagick, fixed 6.2.9.1) #217560
 CVE-2006-5867 version (fetchmail, fixed 6.3.6) #221984 [since FEDORA-2007-042]




More information about the scm-commits mailing list