diff options
author | cvebot <cvebot@localhost> | 2010-10-20 22:15:24 +0000 |
---|---|---|
committer | cvebot <cvebot@localhost> | 2010-10-20 22:15:24 +0000 |
commit | 0c556824077b2a0e55b328224db4a9b3eb5428e2 (patch) | |
tree | e803d0d35058f4c852e5f86a103804e584aeb258 | |
parent | MITRE sync (diff) | |
download | security-0c556824077b2a0e55b328224db4a9b3eb5428e2.tar.gz security-0c556824077b2a0e55b328224db4a9b3eb5428e2.tar.bz2 security-0c556824077b2a0e55b328224db4a9b3eb5428e2.zip |
MITRE sync
svn path=/; revision=2176
-rw-r--r-- | data/CVE/list | 172 |
1 files changed, 97 insertions, 75 deletions
diff --git a/data/CVE/list b/data/CVE/list index fdd734e..6674b50 100644 --- a/data/CVE/list +++ b/data/CVE/list @@ -61001,7 +61001,7 @@ CVE-2007-6737 (FTPServer.py in pyftpdlib before 0.2.0 does not increment the ... TODO: check CVE-2007-6738 (pyftpdlib before 0.1.1 does not choose a random value for the port ...) TODO: check -CVE-2007-6739 (FTPServer.py in pyftpdlib before 0.2.0 allows remote attackers to cause ...) +CVE-2007-6739 (FTPServer.py in pyftpdlib before 0.2.0 allows remote attackers to ...) TODO: check CVE-2007-6740 (The ftp_STOU function in FTPServer.py in pyftpdlib before 0.2.0 does ...) TODO: check @@ -87251,8 +87251,8 @@ CVE-2010-0780 RESERVED CVE-2010-0781 (Unspecified vulnerability in the administrative console in IBM ...) NOT-FOR-US: ibm websphere_application_server -CVE-2010-0782 - RESERVED +CVE-2010-0782 (IBM WebSphere MQ 6.x before 6.0.2.10 and 7.x before 7.0.1.3 allows ...) + TODO: check CVE-2010-0783 RESERVED CVE-2010-0784 @@ -88459,7 +88459,7 @@ CVE-2010-1384 (Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows TODO: check CVE-2010-1385 (Use-after-free vulnerability in Apple Safari before 5.0 on Mac OS X ...) TODO: check -CVE-2010-1386 (page/Geolocation.cpp in WebCore in WebKit before r56188 does not ...) +CVE-2010-1386 (page/Geolocation.cpp in WebCore in WebKit before r56188 and before ...) TODO: check CVE-2010-1387 (Use-after-free vulnerability in JavaScriptCore in WebKit in Apple ...) NOT-FOR-US: apple itunes @@ -89806,8 +89806,8 @@ CVE-2010-2055 (Ghostscript 8.71 and earlier reads initialization files from the BUG: 332061 CVE-2010-2056 (GNU gv before 3.7.0 allows local users to overwrite arbitrary files ...) BUG: 329125 -CVE-2010-2057 - RESERVED +CVE-2010-2057 (shared/util/StateUtils.java in Apache MyFaces 1.1.x before 1.1.8, 1.2.x ...) + TODO: check CVE-2010-2058 (setup.py in Prewikka 0.9.14 installs prewikka.conf with world-readable ...) BUG: 270056 CVE-2010-2059 (lib/fsm.c in RPM 4.8.0 and unspecified 4.7.x and 4.6.x versions, and ...) @@ -92013,7 +92013,7 @@ CVE-2010-3156 RESERVED CVE-2010-3157 (Untrusted search path vulnerability in XacRett before 50 allows ...) TODO: check -CVE-2010-3158 (Untrusted search path vulnerability in Lhaplus before 1.58 allows local ...) +CVE-2010-3158 (Untrusted search path vulnerability in Lhaplus before 1.58 allows ...) TODO: check CVE-2010-3159 RESERVED @@ -92396,48 +92396,48 @@ CVE-2010-3347 RESERVED CVE-2010-3348 RESERVED -CVE-2010-3349 - RESERVED -CVE-2010-3350 - RESERVED -CVE-2010-3351 - RESERVED +CVE-2010-3349 (Ardour 2.8.11 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3350 (bareFTP 0.3.4 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3351 (startBristol in Bristol 0.60.5 places a zero-length directory name in ...) + TODO: check CVE-2010-3352 RESERVED -CVE-2010-3353 - RESERVED -CVE-2010-3354 - RESERVED -CVE-2010-3355 - RESERVED +CVE-2010-3353 (Cowbell 0.2.7.1 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3354 (dropboxd in Dropbox 0.7.110 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3355 (Ember 0.5.7 places a zero-length directory name in the LD_LIBRARY_PATH, ...) + TODO: check CVE-2010-3356 RESERVED -CVE-2010-3357 - RESERVED -CVE-2010-3358 - RESERVED +CVE-2010-3357 (gnome-subtitles 1.0 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3358 (HenPlus JDBC SQL-Shell 0.9.7 places a zero-length directory name in the ...) + TODO: check CVE-2010-3359 RESERVED -CVE-2010-3360 - RESERVED -CVE-2010-3361 - RESERVED -CVE-2010-3362 - RESERVED -CVE-2010-3363 - RESERVED -CVE-2010-3364 - RESERVED -CVE-2010-3365 - RESERVED -CVE-2010-3366 - RESERVED +CVE-2010-3360 (Hipo 0.6.1 places a zero-length directory name in the LD_LIBRARY_PATH, ...) + TODO: check +CVE-2010-3361 (The (1) iked, (2) ikea, and (3) ikec scripts in Shrew Soft IKE 2.1.5 ...) + TODO: check +CVE-2010-3362 (lastfm 1.5.4 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3363 (roarify in roaraudio 0.3 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3364 (The vips-7.22 script in VIPS 7.22.2 places a zero-length directory name ...) + TODO: check +CVE-2010-3365 (Mistelix 0.31 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3366 (Mn_Fit 5.13 places a zero-length directory name in the LD_LIBRARY_PATH, ...) + TODO: check CVE-2010-3367 RESERVED CVE-2010-3368 RESERVED -CVE-2010-3369 - RESERVED +CVE-2010-3369 (The (1) mdb and (2) mdb-symbolreader scripts in mono-debugger 2.4.3 ...) + TODO: check CVE-2010-3370 RESERVED CVE-2010-3371 @@ -92450,44 +92450,44 @@ CVE-2010-3374 (Qt Creator before 2.0.1 places a zero-length directory name in th TODO: check CVE-2010-3375 RESERVED -CVE-2010-3376 - RESERVED -CVE-2010-3377 - RESERVED -CVE-2010-3378 - RESERVED +CVE-2010-3376 (The (1) proofserv, (2) xrdcp, (3) xrdpwdadmin, and (4) xrd scripts in ...) + TODO: check +CVE-2010-3377 (The (1) runSalome, (2) runTestMedCorba, (3) runLightSalome, and (4) ...) + TODO: check +CVE-2010-3378 (The (1) scilab, (2) scilab-cli, and (3) scilab-adv-cli scripts in ...) + TODO: check CVE-2010-3379 RESERVED CVE-2010-3380 (The (1) init.d/slurm and (2) init.d/slurmdbd scripts in SLURM before ...) TODO: check -CVE-2010-3381 - RESERVED -CVE-2010-3382 - RESERVED -CVE-2010-3383 - RESERVED -CVE-2010-3384 - RESERVED -CVE-2010-3385 - RESERVED -CVE-2010-3386 - RESERVED -CVE-2010-3387 - RESERVED +CVE-2010-3381 (The (1) tangerine and (2) tangerine-properties scripts in Tangerine ...) + TODO: check +CVE-2010-3382 (tauex in Tuning and Analysis Utilities (TAU) 2.16.4 places a ...) + TODO: check +CVE-2010-3383 (The (1) teamspeak and (2) teamspeak-server scripts in TeamSpeak 2.0.32 ...) + TODO: check +CVE-2010-3384 (The (1) torcs, (2) nfsperf, (3) accc, (4) texmapper, (5) trackgen, and ...) + TODO: check +CVE-2010-3385 (TuxGuitar 1.2 places a zero-length directory name in the ...) + TODO: check +CVE-2010-3386 (usttrace in LTTng Userspace Tracer (aka UST) 0.7 places a zero-length ...) + TODO: check +CVE-2010-3387 (** DISPUTED ** vdrleaktest in Video Disk Recorder (VDR) 1.6.0 places a ...) + TODO: check CVE-2010-3388 RESERVED -CVE-2010-3389 - RESERVED +CVE-2010-3389 (The (1) SAPDatabase and (2) SAPInstance scripts in OCF Resource Agents ...) + TODO: check CVE-2010-3390 RESERVED CVE-2010-3391 RESERVED CVE-2010-3392 RESERVED -CVE-2010-3393 - RESERVED -CVE-2010-3394 - RESERVED +CVE-2010-3393 (magics-config in Magics++ 2.10.0 places a zero-length directory name in ...) + TODO: check +CVE-2010-3394 (The (1) texmacs and (2) tm_mupad_help scripts in TeXmacs 1.0.7.4 place ...) + TODO: check CVE-2010-3395 RESERVED CVE-2010-3396 (Buffer overflow in kavfm.sys in Kingsoft Antivirus 2010.04.26.648 and ...) @@ -92687,7 +92687,7 @@ CVE-2010-3491 RESERVED CVE-2010-3492 (The asyncore module in Python before 3.2 does not properly handle ...) TODO: check -CVE-2010-3493 (Multiple race conditions in smtpd.py in the smtpd module in Python 2.6, ...) +CVE-2010-3493 (Multiple race conditions in smtpd.py in the smtpd module in Python ...) TODO: check CVE-2010-3494 (Race condition in the FTPHandler class in ftpserver.py in pyftpdlib ...) TODO: check @@ -92783,7 +92783,7 @@ CVE-2010-3539 (Unspecified vulnerability in the PeopleSoft Enterprise FMS - GL . TODO: check CVE-2010-3540 (Unspecified vulnerability in Oracle Solaris 10 and OpenSolaris allows ...) TODO: check -CVE-2010-3541 (Unspecified vulnerability in the Networking component in Oracle Java SE ...) +CVE-2010-3541 (Unspecified vulnerability in the Networking component in Oracle Java ...) TODO: check CVE-2010-3542 (Unspecified vulnerability in Oracle Solaris 8, 9, and 10, and ...) TODO: check @@ -92799,11 +92799,11 @@ CVE-2010-3547 (Unspecified vulnerability in the PeopleSoft FMS ESA - EX componen TODO: check CVE-2010-3548 (Unspecified vulnerability in the JNDI component in Oracle Java SE and ...) TODO: check -CVE-2010-3549 (Unspecified vulnerability in the Networking component in Oracle Java SE ...) +CVE-2010-3549 (Unspecified vulnerability in the Networking component in Oracle Java ...) TODO: check CVE-2010-3550 (Unspecified vulnerability in the Java Web Start component in Oracle ...) TODO: check -CVE-2010-3551 (Unspecified vulnerability in the Networking component in Oracle Java SE ...) +CVE-2010-3551 (Unspecified vulnerability in the Networking component in Oracle Java ...) TODO: check CVE-2010-3552 (Unspecified vulnerability in the New Java Plug-in component in Oracle ...) TODO: check @@ -92811,7 +92811,7 @@ CVE-2010-3553 (Unspecified vulnerability in the Swing component in Oracle Java S TODO: check CVE-2010-3554 (Unspecified vulnerability in the CORBA component in Oracle Java SE and ...) TODO: check -CVE-2010-3555 (Unspecified vulnerability in the Deployment component in Oracle Java SE ...) +CVE-2010-3555 (Unspecified vulnerability in the Deployment component in Oracle Java ...) TODO: check CVE-2010-3556 (Unspecified vulnerability in the 2D component in Oracle Java SE and ...) TODO: check @@ -92821,13 +92821,13 @@ CVE-2010-3558 (Unspecified vulnerability in the Java Web Start component in Orac TODO: check CVE-2010-3559 (Unspecified vulnerability in the Sound component in Oracle Java SE and ...) TODO: check -CVE-2010-3560 (Unspecified vulnerability in the Networking component in Oracle Java SE ...) +CVE-2010-3560 (Unspecified vulnerability in the Networking component in Oracle Java ...) TODO: check CVE-2010-3561 (Unspecified vulnerability in the CORBA component in Oracle Java SE and ...) TODO: check CVE-2010-3562 (Unspecified vulnerability in the 2D component in Oracle Java SE and ...) TODO: check -CVE-2010-3563 (Unspecified vulnerability in the Deployment component in Oracle Java SE ...) +CVE-2010-3563 (Unspecified vulnerability in the Deployment component in Oracle Java ...) TODO: check CVE-2010-3564 (Unspecified vulnerability in the Oracle Communications Messaging ...) TODO: check @@ -92841,15 +92841,15 @@ CVE-2010-3568 (Unspecified vulnerability in the Java Runtime Environment compone TODO: check CVE-2010-3569 (Unspecified vulnerability in the Java Runtime Environment component in ...) TODO: check -CVE-2010-3570 (Unspecified vulnerability in the Deployment Toolkit component in Oracle ...) +CVE-2010-3570 (Unspecified vulnerability in the Deployment Toolkit component in ...) TODO: check CVE-2010-3571 (Unspecified vulnerability in the 2D component in Oracle Java SE and ...) TODO: check CVE-2010-3572 (Unspecified vulnerability in the Sound component in Oracle Java SE and ...) TODO: check -CVE-2010-3573 (Unspecified vulnerability in the Networking component in Oracle Java SE ...) +CVE-2010-3573 (Unspecified vulnerability in the Networking component in Oracle Java ...) TODO: check -CVE-2010-3574 (Unspecified vulnerability in the Networking component in Oracle Java SE ...) +CVE-2010-3574 (Unspecified vulnerability in the Networking component in Oracle Java ...) TODO: check CVE-2010-3575 (Unspecified vulnerability in the Oracle Communications Messaging ...) TODO: check @@ -93693,3 +93693,25 @@ CVE-2010-3994 RESERVED CVE-2010-3995 RESERVED +CVE-2010-3996 + RESERVED +CVE-2010-3997 + RESERVED +CVE-2010-3998 + RESERVED +CVE-2010-3999 + RESERVED +CVE-2010-4000 + RESERVED +CVE-2010-4001 + RESERVED +CVE-2010-4002 + RESERVED +CVE-2010-4003 + RESERVED +CVE-2010-4004 + RESERVED +CVE-2010-4005 + RESERVED +CVE-2010-4007 (Oracle Mojarra uses an encrypted View State without a Message ...) + TODO: check |