-
Notifications
You must be signed in to change notification settings - Fork 121
Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
processed pull request 477 - ALTX-SOFT
- Loading branch information
Showing
35 changed files
with
657 additions
and
645 deletions.
There are no files selected for viewing
60 changes: 30 additions & 30 deletions
60
repository/definitions/inventory/oval_org.mitre.oval_def_11999.xml
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,30 +1,30 @@ | ||
<oval-def:definition xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5" class="inventory" id="oval:org.mitre.oval:def:11999" version="3"> | ||
<oval-def:metadata> | ||
<oval-def:title>IBM Lotus Notes is installed</oval-def:title> | ||
<oval-def:affected family="windows"> | ||
<oval-def:platform>Microsoft Windows 7</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows Server 2003</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows Server 2008</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows Vista</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows XP</oval-def:platform> | ||
<oval-def:product>IBM Lotus Notes</oval-def:product> | ||
</oval-def:affected> | ||
<oval-def:reference ref_id="cpe:/a:ibm:lotus_notes" source="CPE" /> | ||
<oval-def:description>IBM Lotus Notes is installed</oval-def:description> | ||
<oval-def:oval_repository> | ||
<oval-def:dates> | ||
<oval-def:submitted date="2011-02-25T20:15:39"> | ||
<oval-def:contributor organization="SecPod Technologies">SecPod Team</oval-def:contributor> | ||
</oval-def:submitted> | ||
<oval-def:status_change date="2011-02-28T09:39:49.571-05:00">DRAFT</oval-def:status_change> | ||
<oval-def:status_change date="2011-03-21T04:00:04.256-04:00">INTERIM</oval-def:status_change> | ||
<oval-def:status_change date="2011-04-11T04:00:04.578-04:00">ACCEPTED</oval-def:status_change> | ||
</oval-def:dates> | ||
<oval-def:status>ACCEPTED</oval-def:status> | ||
<oval-def:min_schema_version>5.3</oval-def:min_schema_version> | ||
</oval-def:oval_repository> | ||
</oval-def:metadata> | ||
<oval-def:criteria operator="AND"> | ||
<oval-def:criterion comment="Check if IBM Lotus Notes is installed" test_ref="oval:org.mitre.oval:tst:41876" /> | ||
</oval-def:criteria> | ||
</oval-def:definition> | ||
<definition xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" class="inventory" id="oval:org.mitre.oval:def:11999" version="4"> | ||
<metadata> | ||
<title>IBM Lotus Notes is installed</title> | ||
<affected family="windows"> | ||
<platform>Microsoft Windows 7</platform> | ||
<platform>Microsoft Windows Server 2003</platform> | ||
<platform>Microsoft Windows Server 2008</platform> | ||
<platform>Microsoft Windows Vista</platform> | ||
<platform>Microsoft Windows XP</platform> | ||
<product>IBM Lotus Notes</product> | ||
</affected> | ||
<reference ref_id="cpe:/a:ibm:lotus_notes" source="CPE" /> | ||
<description>IBM Lotus Notes is installed</description> | ||
<oval_repository> | ||
<dates> | ||
<submitted date="2011-02-25T20:15:39"> | ||
<contributor organization="SecPod Technologies">SecPod Team</contributor> | ||
</submitted> | ||
<status_change date="2011-02-28T09:39:49.571-05:00">DRAFT</status_change> | ||
<status_change date="2011-03-21T04:00:04.256-04:00">INTERIM</status_change> | ||
<status_change date="2011-04-11T04:00:04.578-04:00">ACCEPTED</status_change> | ||
</dates> | ||
<status>ACCEPTED</status> | ||
<min_schema_version>5.3</min_schema_version> | ||
</oval_repository> | ||
</metadata> | ||
<criteria operator="AND"> | ||
<criterion comment="Check if IBM Lotus Notes is installed" test_ref="oval:org.mitre.oval:tst:41876" /> | ||
</criteria> | ||
</definition> |
140 changes: 70 additions & 70 deletions
140
repository/definitions/vulnerability/oval_org.mitre.oval_def_13796.xml
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Original file line number | Diff line number | Diff line change |
---|---|---|
@@ -1,70 +1,70 @@ | ||
<oval-def:definition xmlns:oval-def="http://oval.mitre.org/XMLSchema/oval-definitions-5" class="vulnerability" id="oval:org.mitre.oval:def:13796" version="7"> | ||
<oval-def:metadata> | ||
<oval-def:title>Stack-based buffer overflow in assr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via crafted tag data in an Applix spreadsheet attachment, aka SPR PRAD8823A7.</oval-def:title> | ||
<oval-def:affected family="windows"> | ||
<oval-def:platform>Microsoft Windows 7</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows Server 2008</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows Vista</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows Server 2003</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows XP</oval-def:platform> | ||
<oval-def:platform>Microsoft Windows 2000</oval-def:platform> | ||
<oval-def:product>Lotus Notes</oval-def:product> | ||
</oval-def:affected> | ||
<oval-def:reference ref_id="CVE-2011-1216" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1216" source="CVE" /> | ||
<oval-def:description>Stack-based buffer overflow in assr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via crafted tag data in an Applix spreadsheet attachment, aka SPR PRAD8823A7.</oval-def:description> | ||
<oval-def:oval_repository> | ||
<oval-def:dates> | ||
<oval-def:submitted date="2011-12-16T09:51:49.000-05:00"> | ||
<oval-def:contributor organization="DTCC">Aharon Chernin</oval-def:contributor> | ||
</oval-def:submitted> | ||
<oval-def:status_change date="2011-12-19T15:44:14.657-05:00">DRAFT</oval-def:status_change> | ||
<oval-def:status_change date="2012-01-09T04:00:06.377-05:00">INTERIM</oval-def:status_change> | ||
<oval-def:status_change date="2012-01-30T04:00:22.085-05:00">ACCEPTED</oval-def:status_change> | ||
<oval-def:modified comment="EDITED oval:org.altx-soft.oval:ste:18430 - contains tests with modified comments and all dependences" date="2014-02-13T12:19:00.287-05:00"> | ||
<oval-def:contributor organization="ALTX-SOFT">Maria Mikhno</oval-def:contributor> | ||
</oval-def:modified> | ||
<oval-def:status_change date="2014-02-13T12:22:42.073-05:00">INTERIM</oval-def:status_change> | ||
<oval-def:status_change date="2014-03-03T04:00:40.043-05:00">ACCEPTED</oval-def:status_change> | ||
<oval-def:modified comment="EDITED oval:org.mitre.oval:def:13796 - registry_tests replaced with file_tests because registry path was compared with version" date="2015-05-29T11:02:00.629-04:00"> | ||
<oval-def:contributor organization="ALTX-SOFT">Maria Mikhno</oval-def:contributor> | ||
</oval-def:modified> | ||
<oval-def:status_change date="2015-05-29T11:05:02.339-04:00">INTERIM</oval-def:status_change> | ||
<oval-def:status_change date="2015-06-15T04:00:07.569-04:00">ACCEPTED</oval-def:status_change> | ||
</oval-def:dates> | ||
<oval-def:status>ACCEPTED</oval-def:status> | ||
<oval-def:min_schema_version>5.3</oval-def:min_schema_version> | ||
</oval-def:oval_repository> | ||
</oval-def:metadata> | ||
<oval-def:criteria operator="OR"> | ||
<oval-def:criteria comment="Determine if the version of Lotus Notes is less than or equal to 8.5.2.2 and is greater than or equal to 8.0.0" operator="AND"> | ||
<oval-def:extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is less than or equal to 8.5.2.2" test_ref="oval:org.mitre.oval:tst:138913" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is greater than or equal to 8.0.0" test_ref="oval:org.mitre.oval:tst:138507" /> | ||
</oval-def:criteria> | ||
<oval-def:criteria comment="Determine if the version of Lotus Notes is less than or equal to 7.0.4 and is greater than or equal to 7.0.0" operator="AND"> | ||
<oval-def:extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is less than or equal to 7.0.4" test_ref="oval:org.mitre.oval:tst:138653" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is greater than or equal to 7.0.0" test_ref="oval:org.mitre.oval:tst:138900" /> | ||
</oval-def:criteria> | ||
<oval-def:criteria comment="Determine if the version of Lotus Notes is less than or equal to 6.5.6 and is greater than or equal to 6.0.1" operator="AND"> | ||
<oval-def:extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is less than or equal to 6.5.6" test_ref="oval:org.mitre.oval:tst:138776" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is greater than or equal to 6.0.1" test_ref="oval:org.mitre.oval:tst:138813" /> | ||
</oval-def:criteria> | ||
<oval-def:criteria comment="Determine if the version of Lotus Notes is less than or equal to 5.2 and is greater than or equal to 5:0a" operator="AND"> | ||
<oval-def:extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is less than or equal to 5.2" test_ref="oval:org.mitre.oval:tst:138910" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is greater than or equal to 5:0a" test_ref="oval:org.mitre.oval:tst:138741" /> | ||
</oval-def:criteria> | ||
<oval-def:criteria comment="Determine if the version of Lotus Notes is less than or equal to 4.6 and is greater than or equal to 4.2.1" operator="AND"> | ||
<oval-def:extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is less than or equal to 4.6" test_ref="oval:org.mitre.oval:tst:138685" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is greater than or equal to 4.2.1" test_ref="oval:org.mitre.oval:tst:138657" /> | ||
</oval-def:criteria> | ||
<oval-def:criteria comment="Determine if the version of Lotus Notes is less than or equal to 3.0.0.2 and is greater than or equal to 3.0.0.1" operator="AND"> | ||
<oval-def:extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is less than or equal to 3.0.0.2" test_ref="oval:org.mitre.oval:tst:138223" /> | ||
<oval-def:criterion comment="Determine if the version of Lotus Notes is greater than or equal to 3.0.0.1" test_ref="oval:org.mitre.oval:tst:138612" /> | ||
</oval-def:criteria> | ||
</oval-def:criteria> | ||
</oval-def:definition> | ||
<definition xmlns="http://oval.mitre.org/XMLSchema/oval-definitions-5" class="vulnerability" id="oval:org.mitre.oval:def:13796" version="8"> | ||
<metadata> | ||
<title>Stack-based buffer overflow in assr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via crafted tag data in an Applix spreadsheet attachment, aka SPR PRAD8823A7.</title> | ||
<affected family="windows"> | ||
<platform>Microsoft Windows 7</platform> | ||
<platform>Microsoft Windows Server 2008</platform> | ||
<platform>Microsoft Windows Vista</platform> | ||
<platform>Microsoft Windows Server 2003</platform> | ||
<platform>Microsoft Windows XP</platform> | ||
<platform>Microsoft Windows 2000</platform> | ||
<product>Lotus Notes</product> | ||
</affected> | ||
<reference ref_id="CVE-2011-1216" ref_url="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1216" source="CVE" /> | ||
<description>Stack-based buffer overflow in assr.dll in Autonomy KeyView, as used in IBM Lotus Notes before 8.5.2 FP3, allows remote attackers to execute arbitrary code via crafted tag data in an Applix spreadsheet attachment, aka SPR PRAD8823A7.</description> | ||
<oval_repository> | ||
<dates> | ||
<submitted date="2011-12-16T09:51:49.000-05:00"> | ||
<contributor organization="DTCC">Aharon Chernin</contributor> | ||
</submitted> | ||
<status_change date="2011-12-19T15:44:14.657-05:00">DRAFT</status_change> | ||
<status_change date="2012-01-09T04:00:06.377-05:00">INTERIM</status_change> | ||
<status_change date="2012-01-30T04:00:22.085-05:00">ACCEPTED</status_change> | ||
<modified comment="EDITED oval:org.altx-soft.oval:ste:18430 - contains tests with modified comments and all dependences" date="2014-02-13T12:19:00.287-05:00"> | ||
<contributor organization="ALTX-SOFT">Maria Mikhno</contributor> | ||
</modified> | ||
<status_change date="2014-02-13T12:22:42.073-05:00">INTERIM</status_change> | ||
<status_change date="2014-03-03T04:00:40.043-05:00">ACCEPTED</status_change> | ||
<modified comment="EDITED oval:org.mitre.oval:def:13796 - registry_tests replaced with file_tests because registry path was compared with version" date="2015-05-29T11:02:00.629-04:00"> | ||
<contributor organization="ALTX-SOFT">Maria Mikhno</contributor> | ||
</modified> | ||
<status_change date="2015-05-29T11:05:02.339-04:00">INTERIM</status_change> | ||
<status_change date="2015-06-15T04:00:07.569-04:00">ACCEPTED</status_change> | ||
</dates> | ||
<status>ACCEPTED</status> | ||
<min_schema_version>5.3</min_schema_version> | ||
</oval_repository> | ||
</metadata> | ||
<criteria operator="OR"> | ||
<criteria comment="Determine if the version of Lotus Notes is less than or equal to 8.5.2.2 and is greater than or equal to 8.0.0" operator="AND"> | ||
<extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<criterion comment="Determine if the version of Lotus Notes is less than or equal to 8.5.2.2" test_ref="oval:org.mitre.oval:tst:138913" /> | ||
<criterion comment="Determine if the version of Lotus Notes is greater than or equal to 8.0.0" test_ref="oval:org.mitre.oval:tst:138507" /> | ||
</criteria> | ||
<criteria comment="Determine if the version of Lotus Notes is less than or equal to 7.0.4 and is greater than or equal to 7.0.0" operator="AND"> | ||
<extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<criterion comment="Determine if the version of Lotus Notes is less than or equal to 7.0.4" test_ref="oval:org.mitre.oval:tst:138653" /> | ||
<criterion comment="Determine if the version of Lotus Notes is greater than or equal to 7.0.0" test_ref="oval:org.mitre.oval:tst:138900" /> | ||
</criteria> | ||
<criteria comment="Determine if the version of Lotus Notes is less than or equal to 6.5.6 and is greater than or equal to 6.0.1" operator="AND"> | ||
<extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<criterion comment="Determine if the version of Lotus Notes is less than or equal to 6.5.6" test_ref="oval:org.mitre.oval:tst:138776" /> | ||
<criterion comment="Determine if the version of Lotus Notes is greater than or equal to 6.0.1" test_ref="oval:org.mitre.oval:tst:138813" /> | ||
</criteria> | ||
<criteria comment="Determine if the version of Lotus Notes is less than or equal to 5.2 and is greater than or equal to 5:0a" operator="AND"> | ||
<extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<criterion comment="Determine if the version of Lotus Notes is less than or equal to 5.2" test_ref="oval:org.mitre.oval:tst:138910" /> | ||
<criterion comment="Determine if the version of Lotus Notes is greater than or equal to 5:0a" test_ref="oval:org.mitre.oval:tst:138741" /> | ||
</criteria> | ||
<criteria comment="Determine if the version of Lotus Notes is less than or equal to 4.6 and is greater than or equal to 4.2.1" operator="AND"> | ||
<extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<criterion comment="Determine if the version of Lotus Notes is less than or equal to 4.6" test_ref="oval:org.mitre.oval:tst:138685" /> | ||
<criterion comment="Determine if the version of Lotus Notes is greater than or equal to 4.2.1" test_ref="oval:org.mitre.oval:tst:138657" /> | ||
</criteria> | ||
<criteria comment="Determine if the version of Lotus Notes is less than or equal to 3.0.0.2 and is greater than or equal to 3.0.0.1" operator="AND"> | ||
<extend_definition comment="IBM Lotus Notes is installed" definition_ref="oval:org.mitre.oval:def:11999" /> | ||
<criterion comment="Determine if the version of Lotus Notes is less than or equal to 3.0.0.2" test_ref="oval:org.mitre.oval:tst:138223" /> | ||
<criterion comment="Determine if the version of Lotus Notes is greater than or equal to 3.0.0.1" test_ref="oval:org.mitre.oval:tst:138612" /> | ||
</criteria> | ||
</criteria> | ||
</definition> |
Oops, something went wrong.