fedora-security/audit fc5,1.432,1.433 fc6,1.184,1.185

Lubomir Kundrak (lkundrak) fedora-extras-commits at redhat.com
Tue Jan 9 15:37:30 UTC 2007


Author: lkundrak

Update of /cvs/fedora/fedora-security/audit
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv16718

Modified Files:
	fc5 fc6 
Log Message:
Today's stuff; fetchmail, bluez, MOAB's pdf



Index: fc5
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc5,v
retrieving revision 1.432
retrieving revision 1.433
diff -u -r1.432 -r1.433
--- fc5	8 Jan 2007 11:09:06 -0000	1.432
+++ fc5	9 Jan 2007 15:37:28 -0000	1.433
@@ -3,8 +3,11 @@
 
 ** are items that need attention
 
+CVE-2007-0104 ignore (poppler) only client DoS
+CVE-2007-0104 ignore (kdegraphics) only client DoS
 CVE-2007-0086 ignore (apache) not a security issue
 CVE-2006-6870 backport (avahi, fixed 0.6.16) #221726 [since FEDORA-2007-018]
+CVE-2006-6899 VULNERABLE (bluez-utils)
 CVE-2006-6772 VULNERABLE (w3m) #221484
 CVE-2006-6719 VULNERABLE (wget) #221469
 CVE-2006-6698 VULNERABLE (GConf2) #219280
@@ -33,9 +36,11 @@
 CVE-2006-6053 backport (kernel) [since FEDORA-2006-1221]
 CVE-2006-5989 backport (mod_auth_kerb) [since FEDORA-2006-1341]
 CVE-2006-5973 VULNERABLE (dovecot, fixed 1.0.rc15) #216508
+CVE-2006-5974 ignore (fetchmail, fixed 6.3.6) only 6.3.5
 CVE-2006-5925 backport (elinks) #215734 [since FEDORA-2006-1277]
 CVE-2006-5871 version (kernel, fixed 2.6.10)
 CVE-2006-5868 VULNERABLE (ImageMagick, fixed 6.2.9.1) #217560
+CVE-2006-5867 VULNERABLE (fetchmail) #221984
 CVE-2006-5864 VULNERABLE (evince) #217672
 CVE-2006-5823 backport (kernel) [since FEDORA-2006-1221]
 CVE-2006-5794 backport (openssh, fixed 4.5) #214641 [since FEDORA-2006-1214]


Index: fc6
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc6,v
retrieving revision 1.184
retrieving revision 1.185
diff -u -r1.184 -r1.185
--- fc6	8 Jan 2007 11:09:06 -0000	1.184
+++ fc6	9 Jan 2007 15:37:28 -0000	1.185
@@ -3,7 +3,10 @@
 
 ** are items that need attention
 
+CVE-2007-0104 ignore (poppler) only client DoS
+CVE-2007-0104 ignore (kdegraphics) only client DoS
 CVE-2007-0086 ignore (apache) not a security issue
+CVE-2006-6899 ignore (bluez-utils) did not affect fc6
 CVE-2006-6870 backport (avahi, fixed 0.6.16) #221440
 CVE-2006-6772 VULNERABLE (w3m) #221484
 CVE-2006-6719 VULNERABLE (wget) #221469
@@ -32,10 +35,12 @@
 CVE-2006-6054 VULNERABLE (kernel, fixed **)
 CVE-2006-6053 backport (kernel) [since FEDORA-2006-1223]
 CVE-2006-5989 ignore (mod_auth_kerb) did not affect fc6
+CVE-2006-5974 ignore (fetchmail, fixed 6.3.6) only 6.3.5
 CVE-2006-5973 VULNERABLE (dovecot, fixed 1.0.rc15) #216508
 CVE-2006-5925 backport (elinks) [since FEDORA-2006-1278] but was never vulneable as didn't have smbclient support
 CVE-2006-5871 version (kernel, fixed 2.6.10)
 CVE-2006-5868 VULNERABLE (ImageMagick, fixed 6.2.9.1) #217560
+CVE-2006-5867 VULNERABLE (fetchmail) #221984
 CVE-2006-5864 VULNERABLE (evince) #217672
 CVE-2006-5823 backport (kernel) [since FEDORA-2006-1223]
 CVE-2006-5794 backport (openssh, fixed 4.5) #214641 [since FEDORA-2006-1215]




More information about the scm-commits mailing list