[Secure-testing-commits] r33649 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Fri Apr 17 09:10:19 UTC 2015


Author: sectracker
Date: 2015-04-17 09:10:19 +0000 (Fri, 17 Apr 2015)
New Revision: 33649

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-17 06:57:55 UTC (rev 33648)
+++ data/CVE/list	2015-04-17 09:10:19 UTC (rev 33649)
@@ -1,3 +1,21 @@
+CVE-2015-3319 (Hotspot Express hotEx Billing Manager 73 does not include the HTTPOnly ...)
+	TODO: check
+CVE-2015-3318
+	RESERVED
+CVE-2015-3317
+	RESERVED
+CVE-2015-3316
+	RESERVED
+CVE-2015-3314
+	RESERVED
+CVE-2015-3313
+	RESERVED
+CVE-2015-3312
+	RESERVED
+CVE-2015-3311
+	RESERVED
+CVE-2015-3307
+	RESERVED
 CVE-2015-XXXX [Buffer Overflow when parsing tar/zip/phar in phar_set_inode)]
 	- php5 <unfixed>
 	NOTE: http://git.php.net/?p=php-src.git;a=commit;h=f59b67ae50064560d7bfcdb0d6a8ab284179053c
@@ -4,10 +22,13 @@
 	NOTE: https://bugs.php.net/bug.php?id=69441
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/16/22
 CVE-2015-3315
+	RESERVED
 	NOT-FOR-US: abrt is Red Hat / Fedora specific
 CVE-2015-3309 [incomplete fix for CVE-2015-3297]
+	RESERVED
 	- etherpad-lite <itp> (bug #576998)
 CVE-2015-3308 [double-free in gnutls]
+	RESERVED
 	[experimental] - gnutls28 3.3.14-1
 	- gnutls28 <unfixed>
 	- gnutls26 <removed>
@@ -641,6 +662,8 @@
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/13/5
 	NOTE: http://git.gnupg.org/cgi-bin/gitweb.cgi?p=libksba.git;a=commit;h=243d12fdec66a4360fbb3e307a046b39b5b4ffc3
 CVE-2015-3310 [buffer overflow in ppp potentially allows DoS]
+	RESERVED
+	{DSA-3228-1}
 	- ppp 2.4.6-3.1 (bug #782450)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/04/13/4
 	NOTE: Patch: https://bugs.debian.org/cgi-bin/bugreport.cgi?msg=17;filename=ppp_2.4.6-3.1-nmu.diff;att=1;bug=782450
@@ -824,8 +847,7 @@
 	NOTE: Introduced by: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=5b423f6a40a0327f9d40bc8b97ce9be266f74368 (v3.6-rc5)
 	NOTE: Introduced in 3.2.x in https://git.kernel.org/cgit/linux/kernel/git/bwh/linux-3.2.y.git/commit/?id=cc1b75d796ad050c83c95733c4220aaa04fa1304 (v3.2.33)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/04/08/1
-CVE-2013-7439 [4-byte buffer overflow in MakeBigReq]
-	RESERVED
+CVE-2013-7439 (Multiple off-by-one errors in the (1) MakeBigReq and (2) SetReqLen ...)
 	{DSA-3224-1 DLA-199-1}
 	- libx11 2:1.6.0-1
 	NOTE: http://cgit.freedesktop.org/xorg/lib/libX11/commit/?id=39547d600a13713e15429f49768e54c3173c828d
@@ -1763,56 +1785,51 @@
 	RESERVED
 CVE-2015-2580
 	RESERVED
-CVE-2015-2579
-	RESERVED
-CVE-2015-2578
-	RESERVED
-CVE-2015-2577
-	RESERVED
-CVE-2015-2576
-	RESERVED
-CVE-2015-2575
-	RESERVED
-CVE-2015-2574
-	RESERVED
-CVE-2015-2573
-	RESERVED
+CVE-2015-2579 (Unspecified vulnerability in the Oracle Health Sciences Argus Safety ...)
+	TODO: check
+CVE-2015-2578 (Unspecified vulnerability in Oracle Sun Solaris 11.2 allows remote ...)
+	TODO: check
+CVE-2015-2577 (Unspecified vulnerability in Oracle Sun Solaris 10 allows local users ...)
+	TODO: check
+CVE-2015-2576 (Unspecified vulnerability in the MySQL Utilities component in Oracle ...)
+	TODO: check
+CVE-2015-2575 (Unspecified vulnerability in the MySQL Connectors component in Oracle ...)
+	TODO: check
+CVE-2015-2574 (Unspecified vulnerability in Oracle Sun Solaris 10 allows local users ...)
+	TODO: check
+CVE-2015-2573 (Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, ...)
 	- mysql-5.5 5.5.42-1
 	- mariadb-10.0 <unfixed>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-2572
-	RESERVED
-CVE-2015-2571
-	RESERVED
+CVE-2015-2572 (Unspecified vulnerability in the Oracle Hyperion Smart View for Office ...)
+	TODO: check
+CVE-2015-2571 (Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, ...)
 	- mysql-5.5 <unfixed> (bug #782645)
 	- mariadb-10.0 <unfixed>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-2570
-	RESERVED
+CVE-2015-2570 (Unspecified vulnerability in the Oracle Demand Planning component in ...)
+	TODO: check
 CVE-2015-2569
 	RESERVED
-CVE-2015-2568
-	RESERVED
+CVE-2015-2568 (Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, ...)
 	- mysql-5.5 5.5.42-1
 	- mariadb-10.0 <unfixed>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-2567
-	RESERVED
+CVE-2015-2567 (Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-2566
-	RESERVED
+CVE-2015-2566 (Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-2565
-	RESERVED
+CVE-2015-2565 (Unspecified vulnerability in the Oracle Installed Base component in ...)
+	TODO: check
 CVE-2015-2564 (SQL injection vulnerability in client-edit.php in ProjectSend ...)
 	NOT-FOR-US: ProjectSend
 CVE-2015-2563 (SQL injection vulnerability in groups.php in Vastal I-Tech phpVID ...)
@@ -3837,13 +3854,11 @@
 	RESERVED
 CVE-2015-1823
 	RESERVED
-CVE-2015-1822 [uninitialized pointer in cmdmon reply slots]
-	RESERVED
+CVE-2015-1822 (chrony before 1.31.1 does not initialize the last "next" pointer when ...)
 	{DSA-3222-1 DLA-193-1}
 	- chrony 1.30-2 (bug #782160)
 	NOTE: Fix: http://git.tuxfamily.org/chrony/chrony.git/commit/?h=1.31-security&id=79eacdb7e694c7e6681b68006425df3faca51aec
-CVE-2015-1821 [Heap out of bound write in address filter]
-	RESERVED
+CVE-2015-1821 (Heap-based buffer overflow in chrony before 1.31.1 allows remote ...)
 	{DSA-3222-1 DLA-193-1}
 	- chrony 1.30-2 (bug #782160)
 	NOTE: Fix: http://git.tuxfamily.org/chrony/chrony.git/commit/?h=1.31-security&id=cf19042ecb656b8afec0cc4906e7dd3ea9266ac8
@@ -8590,158 +8605,138 @@
 	NOT-FOR-US: EMC
 CVE-2015-0512 (Open redirect vulnerability in EMC Unisphere Central before 4.0 allows ...)
 	NOT-FOR-US: EMC
-CVE-2015-0511
-	RESERVED
+CVE-2015-0511 (Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0510
-	RESERVED
-CVE-2015-0509
-	RESERVED
-CVE-2015-0508
-	RESERVED
+CVE-2015-0510 (Unspecified vulnerability in the Oracle Commerce Platform component in ...)
+	TODO: check
+CVE-2015-0509 (Unspecified vulnerability in the Oracle Hyperion BI+ component in ...)
+	TODO: check
+CVE-2015-0508 (Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0507
-	RESERVED
+CVE-2015-0507 (Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0506
-	RESERVED
+CVE-2015-0506 (Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0505
-	RESERVED
+CVE-2015-0505 (Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, ...)
 	- mysql-5.5 <unfixed> (bug #782645)
 	- mariadb-10.0 <unfixed>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0504
-	RESERVED
-CVE-2015-0503
-	RESERVED
+CVE-2015-0504 (Unspecified vulnerability in the Oracle Application Object Library ...)
+	TODO: check
+CVE-2015-0503 (Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0502
-	RESERVED
-CVE-2015-0501
-	RESERVED
+CVE-2015-0502 (Unspecified vulnerability in the Siebel UI Framework component in ...)
+	TODO: check
+CVE-2015-0501 (Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, ...)
 	- mysql-5.5 <unfixed> (bug #782645)
 	- mariadb-10.0 <unfixed>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0500
-	RESERVED
+CVE-2015-0500 (Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0499
-	RESERVED
+CVE-2015-0499 (Unspecified vulnerability in Oracle MySQL Server 5.5.42 and earlier, ...)
 	- mysql-5.5 <unfixed> (bug #782645)
 	- mariadb-10.0 <unfixed>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0498
-	RESERVED
+CVE-2015-0498 (Unspecified vulnerability in Oracle MySQL Server 5.6.23 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0497
-	RESERVED
-CVE-2015-0496
-	RESERVED
-CVE-2015-0495
-	RESERVED
-CVE-2015-0494
-	RESERVED
-CVE-2015-0493
-	RESERVED
-CVE-2015-0492
-	RESERVED
+CVE-2015-0497 (Unspecified vulnerability in the PeopleSoft Enterprise Portal ...)
+	TODO: check
+CVE-2015-0496 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
+	TODO: check
+CVE-2015-0495 (Unspecified vulnerability in the Oracle Commerce Guided Search / ...)
+	TODO: check
+CVE-2015-0494 (Unspecified vulnerability in the Oracle Retail Central Office ...)
+	TODO: check
+CVE-2015-0493 (Unspecified vulnerability in the Oracle Outside In Technology ...)
+	TODO: check
+CVE-2015-0492 (Unspecified vulnerability in Oracle Java SE 7u76 and 8u40, and JavaFX ...)
 	- openjdk-7 <not-affected> (JavaFX not part of OpenJDK)
 	- openjdk-8 <not-affected> (JavaFX not part of OpenJDK)
-CVE-2015-0491
-	RESERVED
+CVE-2015-0491 (Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and ...)
 	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 	- openjdk-8 <unfixed>
 	NOTE: Possibly specific to Oracle Java
-CVE-2015-0490
-	RESERVED
-CVE-2015-0489
-	RESERVED
-CVE-2015-0488
-	RESERVED
+CVE-2015-0490 (Unspecified vulnerability in the Oracle Agile Engineering Data ...)
+	TODO: check
+CVE-2015-0489 (Unspecified vulnerability in the Application Management Pack for ...)
+	TODO: check
+CVE-2015-0488 (Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and ...)
 	- openjdk-6 6b35-1.13.7-1
 	- openjdk-7 7u79-2.5.5-1
 	- openjdk-8 <unfixed>
-CVE-2015-0487
-	RESERVED
-CVE-2015-0486
-	RESERVED
+CVE-2015-0487 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
+	TODO: check
+CVE-2015-0486 (Unspecified vulnerability in Oracle Java SE 8u40 allows remote ...)
 	- openjdk-8 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
-CVE-2015-0485
-	RESERVED
-CVE-2015-0484
-	RESERVED
+CVE-2015-0485 (Unspecified vulnerability in the PeopleSoft Enterprise SCM Strategic ...)
+	TODO: check
+CVE-2015-0484 (Unspecified vulnerability in Oracle Java SE 7u76 and 8u40, and Java FX ...)
 	- openjdk-7 <not-affected> (JavaFX not part of OpenJDK)
 	- openjdk-8 <not-affected> (JavaFX not part of OpenJDK)
-CVE-2015-0483
-	RESERVED
-CVE-2015-0482
-	RESERVED
+CVE-2015-0483 (Unspecified vulnerability in the Core RDBMS component in Oracle ...)
+	TODO: check
+CVE-2015-0482 (Unspecified vulnerability in the Oracle WebLogic Server component in ...)
+	TODO: check
 CVE-2015-0481
 	RESERVED
-CVE-2015-0480 [jar: directory traversal]
-	RESERVED
+CVE-2015-0480 (Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and ...)
 	- openjdk-8 <unfixed>
 	- openjdk-7 7u79-2.5.5-1 (bug #774953)
 	- openjdk-6 6b35-1.13.7-1
 	NOTE: http://www.openwall.com/lists/oss-security/2015/01/16/2
-CVE-2015-0479
-	RESERVED
-CVE-2015-0478
-	RESERVED
+CVE-2015-0479 (Unspecified vulnerability in the XDK and XDB - XML Database component ...)
+	TODO: check
+CVE-2015-0478 (Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and ...)
 	- openjdk-6 6b35-1.13.7-1
 	- openjdk-7 7u79-2.5.5-1
 	- openjdk-8 <unfixed>
-CVE-2015-0477
-	RESERVED
+CVE-2015-0477 (Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and ...)
 	- openjdk-6 6b35-1.13.7-1
 	- openjdk-7 7u79-2.5.5-1
 	- openjdk-8 <unfixed>
-CVE-2015-0476
-	RESERVED
-CVE-2015-0475
-	RESERVED
-CVE-2015-0474
-	RESERVED
-CVE-2015-0473
-	RESERVED
-CVE-2015-0472
-	RESERVED
-CVE-2015-0471
-	RESERVED
-CVE-2015-0470
-	RESERVED
+CVE-2015-0476 (Unspecified vulnerability in the SQL Trace Analyzer component in ...)
+	TODO: check
+CVE-2015-0475 (Unspecified vulnerability in the JD Edwards EnterpriseOne Technology ...)
+	TODO: check
+CVE-2015-0474 (Unspecified vulnerability in the Oracle Outside In Technology ...)
+	TODO: check
+CVE-2015-0473 (Unspecified vulnerability in the Enterprise Manager Base Platform ...)
+	TODO: check
+CVE-2015-0472 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
+	TODO: check
+CVE-2015-0471 (Unspecified vulnerability in Oracle Sun Solaris 10 and 11.2 allows ...)
+	TODO: check
+CVE-2015-0470 (Unspecified vulnerability in Oracle Java SE 8u40 allows remote ...)
 	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 	- openjdk-8 <unfixed>
 	NOTE: Possibly specific to Oracle Java
-CVE-2015-0469
-	RESERVED
+CVE-2015-0469 (Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and ...)
 	- openjdk-6 6b35-1.13.7-1
 	- openjdk-7 7u79-2.5.5-1
 	- openjdk-8 <unfixed>
@@ -8749,56 +8744,53 @@
 	RESERVED
 CVE-2015-0467
 	RESERVED
-CVE-2015-0466
-	RESERVED
-CVE-2015-0465
-	RESERVED
-CVE-2015-0464
-	RESERVED
-CVE-2015-0463
-	RESERVED
-CVE-2015-0462
-	RESERVED
-CVE-2015-0461
-	RESERVED
-CVE-2015-0460
-	RESERVED
+CVE-2015-0466 (Unspecified vulnerability in the Oracle Retail Back Office component ...)
+	TODO: check
+CVE-2015-0465 (Unspecified vulnerability in the Oracle Transportation Management ...)
+	TODO: check
+CVE-2015-0464 (Unspecified vulnerability in the Oracle Transportation Management ...)
+	TODO: check
+CVE-2015-0463 (Unspecified vulnerability in the Oracle Transportation Management ...)
+	TODO: check
+CVE-2015-0462 (Unspecified vulnerability in the Oracle Transportation Management ...)
+	TODO: check
+CVE-2015-0461 (Unspecified vulnerability in the Oracle Access Manager component in ...)
+	TODO: check
+CVE-2015-0460 (Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and ...)
 	- openjdk-6 6b35-1.13.7-1
 	- openjdk-7 7u79-2.5.5-1
 	- openjdk-8 <unfixed>
-CVE-2015-0459
-	RESERVED
+CVE-2015-0459 (Unspecified vulnerability in Oracle Java SE 5.0u81, 6u91, 7u76, and ...)
 	- openjdk-6 <unfixed>
 	- openjdk-7 <unfixed>
 	- openjdk-8 <unfixed>
 	NOTE: Possibly specific to Oracle Java
-CVE-2015-0458
-	RESERVED
+CVE-2015-0458 (Unspecified vulnerability in in Oracle Java SE 6u91, 7u76, and 8u40 ...)
 	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-8 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
-CVE-2015-0457
-	RESERVED
-CVE-2015-0456
-	RESERVED
-CVE-2015-0455
-	RESERVED
+CVE-2015-0457 (Unspecified vulnerability in the Java VM component in Oracle Database ...)
+	TODO: check
+CVE-2015-0456 (Unspecified vulnerability in the Oracle WebCenter Portal component in ...)
+	TODO: check
+CVE-2015-0455 (Unspecified vulnerability in the XDB - XML Database component in ...)
+	TODO: check
 CVE-2015-0454
 	RESERVED
-CVE-2015-0453
-	RESERVED
-CVE-2015-0452
-	RESERVED
-CVE-2015-0451
-	RESERVED
-CVE-2015-0450
-	RESERVED
-CVE-2015-0449
-	RESERVED
-CVE-2015-0448
-	RESERVED
-CVE-2015-0447
-	RESERVED
+CVE-2015-0453 (Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools ...)
+	TODO: check
+CVE-2015-0452 (Unspecified vulnerability in the Oracle VM Server for SPARC component ...)
+	TODO: check
+CVE-2015-0451 (Unspecified vulnerability in the Oracle OpenSSO component in Oracle ...)
+	TODO: check
+CVE-2015-0450 (Unspecified vulnerability in the Oracle WebCenter Portal component in ...)
+	TODO: check
+CVE-2015-0449 (Unspecified vulnerability in the Oracle WebLogic Server component in ...)
+	TODO: check
+CVE-2015-0448 (Unspecified vulnerability in Oracle Sun Solaris 11.2 allows local ...)
+	TODO: check
+CVE-2015-0447 (Unspecified vulnerability in the Oracle Applications Technology Stack ...)
+	TODO: check
 CVE-2015-0446
 	RESERVED
 CVE-2015-0445
@@ -8809,22 +8801,19 @@
 	RESERVED
 CVE-2015-0442
 	RESERVED
-CVE-2015-0441
-	RESERVED
+CVE-2015-0441 (Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, ...)
 	- mysql-5.5 5.5.42-1
 	- mariadb-10.0 <unfixed>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0440
-	RESERVED
-CVE-2015-0439
-	RESERVED
+CVE-2015-0440 (Unspecified vulnerability in the Oracle Knowledge component in Oracle ...)
+	TODO: check
+CVE-2015-0439 (Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
 	NOTE: http://www.oracle.com/technetwork/topics/security/cpuapr2015-2365600.html#AppendixMSQL
-CVE-2015-0438
-	RESERVED
+CVE-2015-0438 (Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
@@ -8837,8 +8826,7 @@
 	NOT-FOR-US: Oracle
 CVE-2015-0434 (Unspecified vulnerability in the Oracle Access Manager component in ...)
 	NOT-FOR-US: Oracle
-CVE-2015-0433
-	RESERVED
+CVE-2015-0433 (Unspecified vulnerability in Oracle MySQL Server 5.5.41 and earlier, ...)
 	- mysql-5.5 5.5.42-1
 	- mariadb-10.0 <unfixed>
 	- percona-xtradb-cluster-5.5 <undetermined>
@@ -8867,8 +8855,7 @@
 	NOT-FOR-US: Oracle
 CVE-2015-0424 (Unspecified vulnerability in the Integrated Lights Out Manager (ILOM) ...)
 	NOT-FOR-US: Oracle Sun Systems Products Suite ILOM
-CVE-2015-0423
-	RESERVED
+CVE-2015-0423 (Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>
@@ -8935,8 +8922,7 @@
 	- openjdk-6 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-7 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
 	- openjdk-8 <not-affected> (Deployment components not part of OpenJDK, only present in Oracle Java)
-CVE-2015-0405
-	RESERVED
+CVE-2015-0405 (Unspecified vulnerability in Oracle MySQL Server 5.6.22 and earlier ...)
 	- mysql-5.5 <not-affected> (Only affects 5.6)
 	- mariadb-10.0 <undetermined>
 	- percona-xtradb-cluster-5.5 <undetermined>




More information about the Secure-testing-commits mailing list