[Secure-testing-team] [Secure-testing-commits] r6759 - data/CVE

Nico Golde debian-secure-testing+ml at ngolde.de
Tue Oct 2 10:17:04 UTC 2007


* Nico Golde <debian-secure-testing+ml at ngolde.de> [2007-10-02 12:16]:
> Hi,
> * Florian Weimer <fw at deneb.enyo.de> [2007-10-02 09:13]:
> > >  CVE-2007-5049
> > >  	REJECTED
> > > -	{DTSA-62-1}
> > > -	- poppler 0.5.4-6.2 (medium; bug #443903)
> > > -	- gpdf <removed>
> > > -	- xpdf 3.02-1.2 (medium; bug #443906)
> > > -	- kdegraphics 4:3.5.7-4 (medium; bug #444015)
> > > -	- koffice 1:1.6.3-3 (medium; bug #444014)
> > > -	- pdftohtml <removed>
> > > -	- tetex-bin 3.0-12
> > > -	NOTE: pdftex links to poppler since 3.0-12, thus marking as fixed
> > > -	- cupsys <not-affected> (unimportant; bug #436099)
> > > -	NOTE: cups uses xpdf-utils
> > > -	- pdfkit.framework 0.8-4
> > > -	NOTE: links to poppler since 0.8-4, thus marking as fixed
> > > -	- libextractor 0.5.12-1
> > > -	NOTE: libextractor uses internal pdf decoder since 0.5.12-1, thus marking as fixed
> > 
> > Why does this entry feature different version information than
> > CVE-2007-3387, when it's allegedly a duplicate?
[...] 
I also have to add that this was made before it was marked 
as a duplicate...
Kind regards
Nico
-- 
Nico Golde - http://ngolde.de - nion at jabber.ccc.de - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url : http://lists.alioth.debian.org/pipermail/secure-testing-team/attachments/20071002/fdeb462f/attachment.pgp 


More information about the Secure-testing-team mailing list