[Secure-testing-commits] r35583 - data/CVE

Helmut Grohne helmutg at moszumanska.debian.org
Mon Jul 20 05:40:18 UTC 2015


Author: helmutg
Date: 2015-07-20 05:40:18 +0000 (Mon, 20 Jul 2015)
New Revision: 35583

Modified:
   data/CVE/list
Log:
Apple NFUs and Apple-specific apache2 and sqlite3

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-07-20 05:02:02 UTC (rev 35582)
+++ data/CVE/list	2015-07-20 05:40:18 UTC (rev 35583)
@@ -4441,147 +4441,148 @@
 CVE-2015-3729
 	RESERVED
 CVE-2015-3728 (The WiFi Connectivity feature in Apple iOS before 8.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS
 CVE-2015-3727 (WebKit in Apple Safari before 6.2.7, 7.x before 7.1.7, and 8.x before ...)
-	TODO: check
+	NOT-FOR-US: Apple Safari
 CVE-2015-3726 (The Telephony subsystem in Apple iOS before 8.4 allows physically ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS
 CVE-2015-3725 (MobileInstallation in Apple iOS before 8.4 does not ensure the ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS
 CVE-2015-3724 (CoreGraphics in Apple iOS before 8.4 allows remote attackers to ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS
 CVE-2015-3723 (CoreGraphics in Apple iOS before 8.4 allows remote attackers to ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS
 CVE-2015-3722 (Application Store in Apple iOS before 8.4 does not ensure the ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS
 CVE-2015-3721 (The kernel in Apple iOS before 8.4 and OS X before 10.10.4 does not ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS
 CVE-2015-3720 (The kernel in Apple OS X before 10.10.4 does not properly manage ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3719 (TrueTypeScaler in FontParser in Apple iOS before 8.4 and OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3718 (systemstatsd in the System Stats subsystem in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3717 (Multiple buffer overflows in the printf functionality in SQLite, as ...)
-	TODO: check
+	- sqlite3 <undetermined>
+	NOTE: Might be an Apple-specific CVE
 CVE-2015-3716 (Spotlight in Apple OS X before 10.10.4 allows attackers to execute ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3715 (The code-signing implementation in Apple OS X before 10.10.4 does not ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3714 (Apple OS X before 10.10.4 does not properly consider custom resource ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3713 (QuickTime in Apple OS X before 10.10.4 allows remote attackers to ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3712 (The NVIDIA graphics driver in Apple OS X before 10.10.4 allows ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3711 (The NTFS implementation in Apple OS X before 10.10.4 allows attackers ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3710 (Mail in Apple iOS before 8.4 and OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3709 (Race condition in kext tools in Apple OS X before 10.10.4 allows local ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3708 (kextd in kext tools in Apple OS X before 10.10.4 allows attackers to ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3707 (The FireWire driver in IOFireWireFamily in Apple OS X before 10.10.4 ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3706 (IOAcceleratorFamily in Apple OS X before 10.10.4 allows attackers to ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3705 (IOAcceleratorFamily in Apple OS X before 10.10.4 allows attackers to ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3704 (runner in Install.framework in the Install Framework Legacy subsystem ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3703 (ImageIO in Apple iOS before 8.4 and OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3702 (Buffer overflow in the Intel Graphics Driver in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3701 (Buffer overflow in the Intel Graphics Driver in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3700 (Buffer overflow in the Intel Graphics Driver in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3699 (Buffer overflow in the Intel Graphics Driver in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3698 (Buffer overflow in the Intel Graphics Driver in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3697 (Buffer overflow in the Intel Graphics Driver in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3696 (Buffer overflow in the Intel Graphics Driver in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3695 (Buffer overflow in the Intel Graphics Driver in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3694 (FontParser in Apple iOS before 8.4 and OS X before 10.10.4 allows ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3693 (Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3692 (Apple Mac EFI before 2015-001, as used in OS X before 10.10.4 and ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3691 (The Monitor Control Command Set kernel extension in the Display ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3690 (The DiskImages subsystem in Apple iOS before 8.4 and OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3689 (CoreText in Apple iOS before 8.4 and OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3688 (CoreText in Apple iOS before 8.4 and OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3687 (CoreText in Apple iOS before 8.4 and OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3686 (CoreText in Apple iOS before 8.4 and OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3685 (CoreText in Apple iOS before 8.4 and OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3684 (The HTTPAuthentication implementation in CFNetwork in Apple iOS before ...)
-	TODO: check
+	NOT-FOR-US: Apple iOS and Apple OS X
 CVE-2015-3683 (The Bluetooth HCI interface implementation in Apple OS X before ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3682 (Apple Type Services (ATS) in Apple OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3681 (Apple Type Services (ATS) in Apple OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3680 (Apple Type Services (ATS) in Apple OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3679 (Apple Type Services (ATS) in Apple OS X before 10.10.4 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3678 (AppleThunderboltEDMService in Apple OS X before 10.10.4 allows local ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3677 (The LZVN compression feature in AppleFSCompression in Apple OS X ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3676 (AppleGraphicsControl in Apple OS X before 10.10.4 allows attackers to ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3675 (The default configuration of the Apache HTTP Server on Apple OS X ...)
-	TODO: check
+	- apache2 <not-affected> (default configuration on Apple OS X)
 CVE-2015-3674 (afpserver in Apple OS X before 10.10.4 allows remote attackers to ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3673 (Admin Framework in Apple OS X before 10.10.4 does not properly ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3672 (Admin Framework in Apple OS X before 10.10.4 does not properly handle ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3671 (Admin Framework in Apple OS X before 10.10.4 does not properly verify ...)
-	TODO: check
+	NOT-FOR-US: Apple OS X
 CVE-2015-3670
 	RESERVED
 CVE-2015-3669 (QT Media Foundation in Apple QuickTime before 7.7.7 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3668 (QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3667 (QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3666 (QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3665 (QT Media Foundation in Apple QuickTime before 7.7.7 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3664 (QT Media Foundation in Apple QuickTime before 7.7.7 allows remote ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3663 (QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3662 (QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3661 (QT Media Foundation in Apple QuickTime before 7.7.7, as used in OS X ...)
-	TODO: check
+	NOT-FOR-US: Apple QuickTime
 CVE-2015-3660 (Cross-site scripting (XSS) vulnerability in the PDF functionality in ...)
-	TODO: check
+	NOT-FOR-US: Apple WebKit
 CVE-2015-3659 (The SQLite authorizer in the Storage functionality in WebKit in Apple ...)
-	TODO: check
+	NOT-FOR-US: Apple WebKit
 CVE-2015-3658 (The Page Loading functionality in WebKit in Apple Safari before 6.2.7, ...)
-	TODO: check
+	NOT-FOR-US: Apple WebKit
 CVE-2015-3657
 	RESERVED
 CVE-2015-3656




More information about the Secure-testing-commits mailing list