[Secure-testing-commits] r33664 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Fri Apr 17 21:10:16 UTC 2015


Author: sectracker
Date: 2015-04-17 21:10:16 +0000 (Fri, 17 Apr 2015)
New Revision: 33664

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-17 20:48:48 UTC (rev 33663)
+++ data/CVE/list	2015-04-17 21:10:16 UTC (rev 33664)
@@ -1,3 +1,21 @@
+CVE-2015-3328
+	RESERVED
+CVE-2015-3327
+	RESERVED
+CVE-2015-3326
+	RESERVED
+CVE-2015-3325
+	RESERVED
+CVE-2015-3324 (The ThinkServer System Manager (TSM) Baseboard Management Controller ...)
+	TODO: check
+CVE-2015-3323 (The ThinkServer System Manager (TSM) Baseboard Management Controller ...)
+	TODO: check
+CVE-2015-3322 (Lenovo ThinkServer RD350, RD450, RD550, RD650, and TD350 servers ...)
+	TODO: check
+CVE-2015-3321
+	RESERVED
+CVE-2015-3320 (Lenovo USB Enhanced Performance Keyboard software before 2.0.2.2 ...)
+	TODO: check
 CVE-2015-XXXX [USERNS allows circumventing MNT_LOCKED]
 	- linux <unfixed>
 	[wheezy] - linux <not-affected> (user namespaces known broken before 3.5, see kernel-sec info)
@@ -5523,8 +5541,8 @@
 	RESERVED
 CVE-2015-1315 (Buffer overflow in the charset_to_intern function in unix/unix.c in ...)
 	- unzip <not-affected> (*-unzip60-alt-iconv-utf8 patch not applied in Debian)
-CVE-2015-1314
-	RESERVED
+CVE-2015-1314 (The USAA Mobile Banking application before 7.10.1 for Android displays ...)
+	TODO: check
 CVE-2015-1313
 	RESERVED
 CVE-2015-1312 (The Dealer Portal in SAP ERP does not properly restrict access, which ...)
@@ -6733,10 +6751,10 @@
 	RESERVED
 CVE-2015-0939
 	RESERVED
-CVE-2015-0938
-	RESERVED
-CVE-2015-0937
-	RESERVED
+CVE-2015-0938 (search.php on the Blue Coat Malware Analysis appliance with software ...)
+	TODO: check
+CVE-2015-0937 (Cross-site scripting (XSS) vulnerability in search.php on the Blue ...)
+	TODO: check
 CVE-2015-0936
 	RESERVED
 CVE-2015-0935
@@ -7211,7 +7229,7 @@
 	- movabletype-opensource <removed>
 	NOTE: https://movabletype.org/news/2015/04/movable_type_608_and_5213_released_to_close_security_vulnera.html
 CVE-2015-0844 (The WML/Lua API in Battle for Wesnoth 1.7.x through 1.11.x and 1.12.x ...)
-	{DSA-3218-1}
+	{DSA-3218-1 DLA-202-1}
 	- wesnoth-1.12 1:1.12.2-1
 	- wesnoth-1.10 1:1.10.7-2
 CVE-2015-0843
@@ -7600,8 +7618,8 @@
 	RESERVED
 CVE-2015-0701
 	RESERVED
-CVE-2015-0700
-	RESERVED
+CVE-2015-0700 (Cross-site request forgery (CSRF) vulnerability in the Dashboard page ...)
+	TODO: check
 CVE-2015-0699 (SQL injection vulnerability in the Interactive Voice Response (IVR) ...)
 	TODO: check
 CVE-2015-0698 (Multiple cross-site scripting (XSS) vulnerabilities in filter search ...)
@@ -7610,8 +7628,7 @@
 	TODO: check
 CVE-2015-0696 (Cross-site scripting (XSS) vulnerability in the login page in Cisco TC ...)
 	TODO: check
-CVE-2015-0695
-	RESERVED
+CVE-2015-0695 (Cisco IOS XR 4.3.4 through 5.3.0 on ASR 9000 devices, when uRPF, PBR, ...)
 	NOT-FOR-US: Cisco IOS
 CVE-2015-0694 (Cisco ASR 9000 devices with software 5.3.0.BASE do not recognize that ...)
 	TODO: check
@@ -7619,8 +7636,7 @@
 	TODO: check
 CVE-2015-0692 (Cisco Web Security Appliance (WSA) devices with software 8.5.0-ise-147 ...)
 	TODO: check
-CVE-2015-0691
-	RESERVED
+CVE-2015-0691 (A certain Cisco JAR file, as distributed in Cache Cleaner in Cisco ...)
 	NOT-FOR-US: Cisco Secure Desktop Cache Cleaner
 CVE-2015-0690 (Cross-site scripting (XSS) vulnerability in the HTML help system on ...)
 	NOT-FOR-US: Cisco
@@ -8595,8 +8611,7 @@
 	RESERVED
 CVE-2015-0531
 	RESERVED
-CVE-2015-0530
-	RESERVED
+CVE-2015-0530 (Buffer overflow in an unspecified function in nsr_render_log in EMC ...)
 	NOT-FOR-US: EMC NetWorker
 CVE-2015-0529 (EMC PowerPath Virtual Appliance (aka vApp) before 2.0 has default ...)
 	NOT-FOR-US: EMC PowerPath Virtual Appliance
@@ -40560,8 +40575,8 @@
 	RESERVED
 CVE-2013-4867
 	RESERVED
-CVE-2013-4866
-	RESERVED
+CVE-2013-4866 (The LIXIL Corporation My SATIS Genius Toilet application for Android ...)
+	TODO: check
 CVE-2013-4865
 	RESERVED
 CVE-2013-4864




More information about the Secure-testing-commits mailing list