[Fedora-security-commits] fedora-security/audit f8, 1.203, 1.204 f9, 1.193, 1.194 fc7, 1.359, 1.360

fedora-security-commits at redhat.com fedora-security-commits at redhat.com
Thu Apr 24 08:48:44 UTC 2008


Author: thoger

Update of /cvs/fedora/fedora-security/audit
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv933/audit

Modified Files:
	f8 f9 fc7 
Log Message:
add blender, phpMyAdmin, util-linux-(ng), perl-Imager
fix-up asterisk



Index: f8
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/f8,v
retrieving revision 1.203
retrieving revision 1.204
diff -u -r1.203 -r1.204
--- f8	23 Apr 2008 10:06:11 -0000	1.203
+++ f8	24 Apr 2008 08:48:13 -0000	1.204
@@ -6,7 +6,11 @@
 
 rhbz293031 fixed (nx) #293031 [since FEDORA-2008-2258] 
 rhbz249840 VULNERABLE (tor) 
-CVE-2008-1897 VULNERABLE (asterisk, fixed 1.4.19.1) 
+CVE-2008-1928 VULNERABLE (perl-Imager, fixed 0.64) #443940 
+CVE-2008-1926 VULNERABLE (util-linux-ng) [since util-linux-ng-2.13.1-2.fc8] 
+CVE-2008-1924 VULNERABLE (phpMyAdmin, fixed 2.11.5.2) [since phpMyAdmin-2.11.5.2-1.fc8] PMASA-2008-3
+CVE-2008-1923 version (asterisk) upstream fix incomplete, resulting in CVE-2008-1897
+CVE-2008-1897 VULNERABLE (asterisk, fixed 1.4.19.1) [since asterisk-1.4.19.1-1.fc8]
 CVE-2008-1878 VULNERABLE (xine-lib, fixed 1.1.12.1) #443055 nsf demuxer overflow
 CVE-2008-1837 ignore (clamav, fixed 0.93) unrar code not shipped
 CVE-2008-1836 VULNERABLE (clamav, fixed 0.93) #442363 
@@ -101,6 +105,7 @@
 CVE-2008-1131 ignore (drupal) #435816 drupal 6.x only
 CVE-2008-1111 fixed (lighttpd) #435807 [since FEDORA-2008-2262] 
 CVE-2008-1110 version (xine-lib, fixed 1.1.10) [since FEDORA-2008-1043]
+CVE-2008-1102 VULNERABLE (blender) #443936 
 CVE-2008-1100 VULNERABLE (clamav, fixed 0.93) #442363 
 CVE-2008-1099 VULNERABLE (moin) #438673 
 CVE-2008-1098 VULNERABLE (moin) #438673 


Index: f9
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/f9,v
retrieving revision 1.193
retrieving revision 1.194
diff -u -r1.193 -r1.194
--- f9	23 Apr 2008 10:06:11 -0000	1.193
+++ f9	24 Apr 2008 08:48:13 -0000	1.194
@@ -5,7 +5,11 @@
 # (mozilla) = (gecko-libs dependent stuff)
 
 rhbz249840 VULNERABLE (tor) 
-CVE-2008-1897 VULNERABLE (asterisk, fixed 1.6.0.beta3) [since asterisk-1.6.0-0.13.beta8.fc9]
+CVE-2008-1928 VULNERABLE (perl-Imager, fixed 0.64) #443941 
+CVE-2008-1926 VULNERABLE (util-linux-ng) [since util-linux-ng-2.13.1-8.1.fc9] 
+CVE-2008-1924 version (phpMyAdmin, fixed 2.11.5.2) [since phpMyAdmin-2.11.5.2-1.fc9] PMASA-2008-3
+CVE-2008-1923 version (asterisk) upstream fix incomplete, resulting in CVE-2008-1897
+CVE-2008-1897 version (asterisk, fixed 1.6.0.beta3) [since asterisk-1.6.0-0.13.beta8.fc9]
 CVE-2008-1878 VULNERABLE (xine-lib, fixed 1.1.12.1) #443056 nsf demuxer overflow
 CVE-2008-1837 ignore (clamav, fixed 0.93) unrar code not shipped
 CVE-2008-1836 VULNERABLE (clamav, fixed 0.93) #442364 
@@ -100,6 +104,7 @@
 CVE-2008-1131 version (drupal, fixed 6.1) #435817 [since drupal-6.1-1.fc9]
 CVE-2008-1111 backport (lighttpd) #435809 [since lighttpd-1.4.18-6.fc9]
 CVE-2008-1110 version (xine-lib, fixed 1.1.10) [since xine-lib-1.1.10-2.fc9]
+CVE-2008-1102 VULNERABLE (blender) #443937 
 CVE-2008-1100 VULNERABLE (clamav, fixed 0.93) #442364 
 CVE-2008-1099 VULNERABLE (moin) #438674 
 CVE-2008-1098 VULNERABLE (moin) #438674 


Index: fc7
===================================================================
RCS file: /cvs/fedora/fedora-security/audit/fc7,v
retrieving revision 1.359
retrieving revision 1.360
diff -u -r1.359 -r1.360
--- fc7	23 Apr 2008 10:06:11 -0000	1.359
+++ fc7	24 Apr 2008 08:48:13 -0000	1.360
@@ -7,7 +7,11 @@
 
 rhbz293031 fixed (nx) #293031 [since FEDORA-2008-2258] 
 rhbz249840 version (tor, fixed 0.1.2.15) #249840 [since FEDORA-2007-1674] 
-CVE-2008-1897 VULNERABLE (asterisk, fixed 1.4.19.1) 
+CVE-2008-1928 VULNERABLE (perl-Imager, fixed 0.64) #443939 
+CVE-2008-1926 VULNERABLE (util-linux) 
+CVE-2008-1924 VULNERABLE (phpMyAdmin, fixed 2.11.5.2) [since phpMyAdmin-2.11.5.2-1.fc7] PMASA-2008-3
+CVE-2008-1923 version (asterisk) upstream fix incomplete, resulting in CVE-2008-1897
+CVE-2008-1897 VULNERABLE (asterisk, fixed 1.4.19.1) [since asterisk-1.4.19.1-1.fc7]
 CVE-2008-1878 VULNERABLE (xine-lib, fixed 1.1.12.1) #443054 nsf demuxer overflow
 CVE-2008-1837 ignore (clamav, fixed 0.93) unrar code not shipped
 CVE-2008-1836 VULNERABLE (clamav, fixed 0.93) #442362 
@@ -102,6 +106,7 @@
 CVE-2008-1131 ignore (drupal) #435815 drupal 6.x only
 CVE-2008-1111 fixed (lighttpd) #435808 [since FEDORA-2008-2278] 
 CVE-2008-1110 version (xine-lib, fixed 1.1.10) [since FEDORA-2008-1047]
+CVE-2008-1102 VULNERABLE (blender) #443935 
 CVE-2008-1100 VULNERABLE (clamav, fixed 0.93) #442362 
 CVE-2008-1099 VULNERABLE (moin) #438672 
 CVE-2008-1098 VULNERABLE (moin) #438672 




More information about the Fedora-security-commits mailing list