[Secure-testing-commits] r23865 - data/CVE

Joey Hess joeyh at alioth.debian.org
Thu Oct 3 21:14:25 UTC 2013


Author: joeyh
Date: 2013-10-03 21:14:25 +0000 (Thu, 03 Oct 2013)
New Revision: 23865

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-03 17:21:16 UTC (rev 23864)
+++ data/CVE/list	2013-10-03 21:14:25 UTC (rev 23865)
@@ -1,3 +1,25 @@
+CVE-2013-5987
+	RESERVED
+CVE-2013-5986
+	RESERVED
+CVE-2013-5985
+	RESERVED
+CVE-2013-5984
+	RESERVED
+CVE-2013-5983
+	RESERVED
+CVE-2013-5982
+	RESERVED
+CVE-2013-5981
+	RESERVED
+CVE-2013-5980
+	RESERVED
+CVE-2013-5979 (Directory traversal vulnerability in Spring Signage Xibo 1.2.x before ...)
+	TODO: check
+CVE-2013-5978
+	RESERVED
+CVE-2013-5977
+	RESERVED
 CVE-2013-5976 (Cross-site scripting (XSS) vulnerability in the access policy logout ...)
 	TODO: check
 CVE-2013-5975 (The access policy logon page (logon.inc) in F5 BIG-IP APM 11.1.0 ...)
@@ -60,8 +82,8 @@
 	RESERVED
 CVE-2013-5945
 	RESERVED
-CVE-2013-5944
-	RESERVED
+CVE-2013-5944 (The integrated web server on Siemens SCALANCE X-200 switches with ...)
+	TODO: check
 CVE-2013-5959 (Blue Coat ProxySG before 6.2.14.1, 6.3.x, 6.4.x, and 6.5 before 6.5.2 ...)
 	NOT-FOR-US: Blue Coat ProxySG
 CVE-2013-5943 (Multiple cross-site scripting (XSS) vulnerabilities in Graphite before ...)
@@ -1041,12 +1063,12 @@
 	RESERVED
 CVE-2013-5520
 	RESERVED
-CVE-2013-5519
-	RESERVED
+CVE-2013-5519 (Cross-site scripting (XSS) vulnerability in the management interface ...)
+	TODO: check
 CVE-2013-5518
 	RESERVED
-CVE-2013-5517
-	RESERVED
+CVE-2013-5517 (SQL injection vulnerability in the web framework in Cisco Unified ...)
+	TODO: check
 CVE-2013-5516 (The Media Snapshot implementation on Cisco TelePresence Multipoint ...)
 	TODO: check
 CVE-2013-5515
@@ -1073,8 +1095,8 @@
 	TODO: check
 CVE-2013-5504 (Cross-site scripting (XSS) vulnerability in the Mobile Device ...)
 	TODO: check
-CVE-2013-5503
-	RESERVED
+CVE-2013-5503 (The UDP process in Cisco IOS XR 4.3.1 does not free packet memory upon ...)
+	TODO: check
 CVE-2013-5502 (The web interface in Cisco MediaSense does not properly protect the ...)
 	NOT-FOR-US: Cisco MediaSense
 CVE-2013-5501 (Cross-site scripting (XSS) vulnerability in the oraservice page in ...)
@@ -4560,10 +4582,10 @@
 	RESERVED
 CVE-2013-4068 (Buffer overflow in iNotes in IBM Domino 8.5.3 before FP5 IF1 and 9.0 ...)
 	NOT-FOR-US: IBM
-CVE-2013-4067
-	RESERVED
-CVE-2013-4066
-	RESERVED
+CVE-2013-4067 (IBM InfoSphere Information Server 8.0, 8.1, 8.5 through FP3, 8.7, and ...)
+	TODO: check
+CVE-2013-4066 (IBM InfoSphere Information Server 8.0, 8.1, 8.5 through FP3, 8.7, and ...)
+	TODO: check
 CVE-2013-4065
 	RESERVED
 CVE-2013-4064
@@ -5535,10 +5557,10 @@
 	RESERVED
 CVE-2013-3626
 	RESERVED
-CVE-2013-3625
-	RESERVED
-CVE-2013-3624
-	RESERVED
+CVE-2013-3625 (An unspecified DLL file in Baramundi Management Suite 7.5 through 8.9 ...)
+	TODO: check
+CVE-2013-3624 (The OS deployment feature in Baramundi Management Suite 7.5 through ...)
+	TODO: check
 CVE-2013-3623
 	RESERVED
 CVE-2013-3622
@@ -5599,8 +5621,8 @@
 	RESERVED
 CVE-2013-3594
 	RESERVED
-CVE-2013-3593
-	RESERVED
+CVE-2013-3593 (Baramundi Management Suite 7.5 through 8.9 uses cleartext for (1) ...)
+	TODO: check
 CVE-2013-3592
 	RESERVED
 CVE-2013-3591
@@ -13833,18 +13855,18 @@
 	RESERVED
 CVE-2013-0695
 	RESERVED
-CVE-2013-0694
-	RESERVED
-CVE-2013-0693
-	RESERVED
-CVE-2013-0692
-	RESERVED
+CVE-2013-0694 (The Emerson Process Management ROC800 RTU with software 3.50 and ...)
+	TODO: check
+CVE-2013-0693 (The kernel in ENEA OSE on the Emerson Process Management ROC800 RTU ...)
+	TODO: check
+CVE-2013-0692 (The kernel in ENEA OSE on the Emerson Process Management ROC800 RTU ...)
+	TODO: check
 CVE-2013-0691
 	RESERVED
 CVE-2013-0690
 	RESERVED
-CVE-2013-0689
-	RESERVED
+CVE-2013-0689 (The TFTP server on the Emerson Process Management ROC800 RTU with ...)
+	TODO: check
 CVE-2013-0688 (Cross-site scripting (XSS) vulnerability in Invensys Wonderware ...)
 	NOT-FOR-US: Invensys Wonderware Information Server
 CVE-2013-0687 (The installer routine in Schneider Electric MiCOM S1 Studio uses ...)
@@ -21887,8 +21909,8 @@
 	RESERVED
 CVE-2012-4137
 	RESERVED
-CVE-2012-4136
-	RESERVED
+CVE-2012-4136 (The high-availability service in the Fabric Interconnect component in ...)
+	TODO: check
 CVE-2012-4135
 	RESERVED
 CVE-2012-4134
@@ -21937,12 +21959,12 @@
 	RESERVED
 CVE-2012-4112
 	RESERVED
-CVE-2012-4111
-	RESERVED
-CVE-2012-4110
-	RESERVED
-CVE-2012-4109
-	RESERVED
+CVE-2012-4111 (The create certreq command in the fabric-interconnect component in ...)
+	TODO: check
+CVE-2012-4110 (run-script in the fabric-interconnect component in Cisco Unified ...)
+	TODO: check
+CVE-2012-4109 (The clear sshkey command in the fabric-interconnect component in Cisco ...)
+	TODO: check
 CVE-2012-4108
 	RESERVED
 CVE-2012-4107
@@ -21951,12 +21973,12 @@
 	RESERVED
 CVE-2012-4105
 	RESERVED
-CVE-2012-4104
-	RESERVED
-CVE-2012-4103
-	RESERVED
-CVE-2012-4102
-	RESERVED
+CVE-2012-4104 (Absolute path traversal vulnerability in the image-download process in ...)
+	TODO: check
+CVE-2012-4103 (ethanalyzer in the fabric-interconnect component in Cisco Unified ...)
+	TODO: check
+CVE-2012-4102 (The activate firmware command in the fabric-interconnect component in ...)
+	TODO: check
 CVE-2012-4101
 	RESERVED
 CVE-2012-4100
@@ -21969,8 +21991,8 @@
 	RESERVED
 CVE-2012-4096 (The local file editor in the Baseboard Management Controller (BMC) in ...)
 	TODO: check
-CVE-2012-4095
-	RESERVED
+CVE-2012-4095 (The local file editor in the fabric-interconnect component in Cisco ...)
+	TODO: check
 CVE-2012-4094 (Buffer overflow in the Smart Call Home feature in the fabric ...)
 	NOT-FOR-US: Cisco Unified Computing System
 CVE-2012-4093 (The Manager component in Cisco Unified Computing System (UCS) allows ...)
@@ -25936,7 +25958,7 @@
 CVE-2012-2498 (Cisco AnyConnect Secure Mobility Client 3.0 through 3.0.08066 does not ...)
 	NOT-FOR-US: Cisco
 CVE-2012-2497
-	RESERVED
+	REJECTED
 CVE-2012-2496 (A certain Java applet in the VPN downloader implementation in the ...)
 	NOT-FOR-US: Cisco
 CVE-2012-2495 (The HostScan downloader implementation in Cisco AnyConnect Secure ...)




More information about the Secure-testing-commits mailing list