summaryrefslogtreecommitdiffstats
path: root/data/CVE/2009.list
diff options
context:
space:
mode:
authorMarkus Koschany <apo@debian.org>2018-04-20 23:22:05 +0200
committerMarkus Koschany <apo@debian.org>2018-04-20 23:22:05 +0200
commitc60ee452dba907dc67bd3b0f17955aa7d9bca594 (patch)
treefb3f1e2cb5320c7c664fe8b6cf1c407258681737 /data/CVE/2009.list
parent02af3b5ec583cdfbd58e9b819c320e9f722eaa85 (diff)
Mark xulrunner issues as end-of-life in wheezy because
they are ancient history by now and no detailed information are available to fix them.
Diffstat (limited to 'data/CVE/2009.list')
-rw-r--r--data/CVE/2009.list5
1 files changed, 5 insertions, 0 deletions
diff --git a/data/CVE/2009.list b/data/CVE/2009.list
index b5321b009e..42e6d4e9e1 100644
--- a/data/CVE/2009.list
+++ b/data/CVE/2009.list
@@ -309,6 +309,7 @@ CVE-2009-5019 (Web Wiz NewsPad stores sensitive information under the web root w
NOT-FOR-US: Web Wiz NewsPad
CVE-2009-5017 (Mozilla Firefox before 3.6 Beta 3 does not properly handle overlong ...)
- xulrunner <undetermined>
+ [wheezy] - xulrunner <end-of-life> (no detailed information available)
CVE-2009-5016 (Integer overflow in the xml_utf8_decode function in ext/xml/xml.c in ...)
- php5 5.3.3-4
[lenny] - php5 5.2.6.dfsg.1-1+lenny10
@@ -2380,8 +2381,10 @@ CVE-2009-XXXX [monkey DoS]
[lenny] - monkey <no-dsa> (Minor issue, fringe package)
CVE-2009-4130 (Visual truncation vulnerability in the MakeScriptDialogTitle function ...)
- xulrunner <undetermined> (bug #565521)
+ [wheezy] - xulrunner <end-of-life> (no detailed information available)
CVE-2009-4129 (Race condition in Mozilla Firefox allows remote attackers to produce a ...)
- xulrunner <undetermined> (bug #565521)
+ [wheezy] - xulrunner <end-of-life> (no detailed information available)
CVE-2009-4128 (GNU GRand Unified Bootloader (GRUB) 2 1.97 only compares the submitted ...)
- grub2 1.97+20091115-1 (bug #555195)
[lenny] - grub2 <not-affected> (Password authentication not yet present)
@@ -8132,6 +8135,7 @@ CVE-2009-2066 (Apple Safari detects http content in https web pages only when th
NOT-FOR-US: Apple Safari
CVE-2009-2065 (Mozilla Firefox 3.0.10, and possibly other versions, detects http ...)
- xulrunner <undetermined> (bug #565521)
+ [wheezy] - xulrunner <end-of-life> (no detailed information available)
CVE-2009-2064 (Microsoft Internet Explorer 8, and possibly other versions, detects ...)
NOT-FOR-US: Microsoft Internet Explorer
CVE-2009-2063 (Opera, possibly before 9.25, processes a 3xx HTTP CONNECT response ...)
@@ -9449,6 +9453,7 @@ CVE-2009-1598 (Google Chrome executes DOM calls in response to a javascript: URI
NOTE: it sounds like a "researcher misconception bug" (as seeming explained by Abobe) rather than a security issue
CVE-2009-1597 (Mozilla Firefox executes DOM calls in response to a javascript: URI in ...)
- xulrunner <undetermined> (bug #565521)
+ [wheezy] - xulrunner <end-of-life> (no detailed information available)
CVE-2009-1596 (Ignite Realtime Openfire before 3.6.5 does not properly implement the ...)
NOT-FOR-US: Openfire
CVE-2009-1595 (The jabber:iq:auth implementation in IQAuthHandler.java in Ignite ...)

© 2014-2024 Faster IT GmbH | imprint | privacy policy