Caldera Affected

Notified:  January 29, 2002 Updated: September 14, 2002

Status

Affected

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

The CERT/CC has no additional comments at this time.

Conectiva Affected

Updated:  June 06, 2002

Status

Affected

Vendor Statement

"[The vulnerability] exists in our supported products: CL 5.0 through CL 7.0. It has been corrected. New packages are available at our ftp server and mirrors: ftp://atualizacoes.conectiva.com.br//RPMS "Announcement CLSA-2002:458 for this vulnerability is available."

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

See Conectiva Announcement CLSA-2002:458 at http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000458&idioma=en

Debian Affected

Notified:  January 29, 2002 Updated: June 06, 2002

Status

Affected

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

The CERT/CC has no additional comments at this time.

Guardian Digital Affected

Updated:  September 16, 2002

Status

Affected

Vendor Statement

"Users of EnGarde 1.0.1 should read advisory ESA-20020125-004 "rsync -- signed integer handling vulnerability" released on January 25, 2002: http://www.linuxsecurity.com/advisories/other_advisory-1853.html Users of EnGarde Secure Professional can obtain updates via the Guardian Digital Secure Network."

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

The CERT/CC has no additional comments at this time.

Hewlett-Packard Company Affected

Notified:  January 29, 2002 Updated: June 06, 2002

Status

Affected

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

The CERT/CC has no additional comments at this time.

IBM-zSeries Unknown

Notified:  January 29, 2002 Updated: June 06, 2002

Status

Unknown

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

The CERT/CC has no additional comments at this time.

MandrakeSoft Affected

Notified:  January 29, 2002 Updated: June 06, 2002

Status

Affected

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

See MandrakeSoft's rsync advisory at http://www.mandrakesecure.net/en/advisories/2002/MDKSA-2002-009.php

Sequent Unknown

Notified:  January 29, 2002 Updated: June 06, 2002

Status

Unknown

Vendor Statement

No statement is currently available from the vendor regarding this vulnerability.

Vendor Information

The vendor has not provided us with any further information regarding this vulnerability.

Addendum

The CERT/CC has no additional comments at this time.