[Secure-testing-commits] r37796 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Fri Nov 20 21:10:14 UTC 2015


Author: sectracker
Date: 2015-11-20 21:10:14 +0000 (Fri, 20 Nov 2015)
New Revision: 37796

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-11-20 19:52:55 UTC (rev 37795)
+++ data/CVE/list	2015-11-20 21:10:14 UTC (rev 37796)
@@ -1,3 +1,119 @@
+CVE-2015-8300
+	RESERVED
+CVE-2015-8299
+	RESERVED
+CVE-2015-8298
+	RESERVED
+CVE-2015-8297
+	RESERVED
+CVE-2015-8296
+	RESERVED
+CVE-2015-8295
+	RESERVED
+CVE-2015-8294
+	RESERVED
+CVE-2015-8293
+	RESERVED
+CVE-2015-8292
+	RESERVED
+CVE-2015-8291
+	RESERVED
+CVE-2015-8290
+	RESERVED
+CVE-2015-8289
+	RESERVED
+CVE-2015-8288
+	RESERVED
+CVE-2015-8287
+	RESERVED
+CVE-2015-8286
+	RESERVED
+CVE-2015-8285
+	RESERVED
+CVE-2015-8284
+	RESERVED
+CVE-2015-8283
+	RESERVED
+CVE-2015-8282
+	RESERVED
+CVE-2015-8281
+	RESERVED
+CVE-2015-8280
+	RESERVED
+CVE-2015-8279
+	RESERVED
+CVE-2015-8278
+	RESERVED
+CVE-2015-8277
+	RESERVED
+CVE-2015-8276
+	RESERVED
+CVE-2015-8275
+	RESERVED
+CVE-2015-8274
+	RESERVED
+CVE-2015-8273
+	RESERVED
+CVE-2015-8272
+	RESERVED
+CVE-2015-8271
+	RESERVED
+CVE-2015-8270
+	RESERVED
+CVE-2015-8269
+	RESERVED
+CVE-2015-8268
+	RESERVED
+CVE-2015-8267
+	RESERVED
+CVE-2015-8266
+	RESERVED
+CVE-2015-8265
+	RESERVED
+CVE-2015-8264
+	RESERVED
+CVE-2015-8263
+	RESERVED
+CVE-2015-8262
+	RESERVED
+CVE-2015-8261
+	RESERVED
+CVE-2015-8260
+	RESERVED
+CVE-2015-8259
+	RESERVED
+CVE-2015-8258
+	RESERVED
+CVE-2015-8257
+	RESERVED
+CVE-2015-8256
+	RESERVED
+CVE-2015-8255
+	RESERVED
+CVE-2015-8254
+	RESERVED
+CVE-2015-8253
+	RESERVED
+CVE-2015-8252
+	RESERVED
+CVE-2015-8251
+	RESERVED
+CVE-2015-8250
+	RESERVED
+CVE-2015-8249
+	RESERVED
+CVE-2015-8248
+	RESERVED
+CVE-2015-8247
+	RESERVED
+CVE-2015-8246
+	RESERVED
+CVE-2015-8245
+	RESERVED
+CVE-2015-8244
+	RESERVED
+CVE-2009-5149
+	RESERVED
 CVE-2015-XXXX [Missing bounds checking and verification of data type causes segfault]
 	- libmaxminddb <unfixed> (bug #805657)
 	NOTE: https://github.com/maxmind/libmaxminddb/commit/51255f113fe3c7b63ffe957636a7656a3ff9d1ff
@@ -16,8 +132,8 @@
 	RESERVED
 CVE-2015-8237
 	RESERVED
-CVE-2015-8236
-	RESERVED
+CVE-2015-8236 (Arista EOS before 4.11.12, 4.12 before 4.12.11, 4.13 before 4.13.14M, ...)
+	TODO: check
 CVE-2015-8235
 	RESERVED
 CVE-2015-8233 (Cross-site scripting (XSS) vulnerability in the MAYO theme 7.x-1.x ...)
@@ -400,16 +516,16 @@
 	RESERVED
 CVE-2015-8088
 	RESERVED
-CVE-2015-8087
-	RESERVED
+CVE-2015-8087 (Huawei NE20E-S, NE40E-M, and NE40E-M2 routers with software before ...)
+	TODO: check
 CVE-2015-8086
 	RESERVED
 CVE-2015-8085
 	RESERVED
 CVE-2015-8084
 	RESERVED
-CVE-2015-8083
-	RESERVED
+CVE-2015-8083 (An unspecified module in Huawei eSpace U1910, U1911, U1930, U1960, ...)
+	TODO: check
 CVE-2015-8082 (The Login Disable module 6.x-1.x before 6.x-1.1 and 7.x-1.x before ...)
 	TODO: check
 CVE-2015-8081 (The Field as Block module 7.x-1.x before 7.x-1.4 for Drupal might ...)
@@ -551,8 +667,7 @@
 	NOTE: '<' not found) even though it does not have the fix yet. The next upstream
 	NOTE: release will fix this issue and will restore XZ support.
 	NOTE: http://www.openwall.com/lists/oss-security/2015/11/02/2
-CVE-2015-7984 [Multiple CSRF Vulnerabilities]
-	RESERVED
+CVE-2015-7984 (Multiple cross-site request forgery (CSRF) vulnerabilities in Horde ...)
 	{DSA-3391-1}
 	- php-horde 5.2.8+debian0-1 (bug #803641)
 	NOTE: https://www.htbridge.com/advisory/HTB23272
@@ -894,8 +1009,8 @@
 	RESERVED
 CVE-2015-7911
 	RESERVED
-CVE-2015-7910
-	RESERVED
+CVE-2015-7910 (Exemys Telemetry Web Server relies on an HTTP Location header to ...)
+	TODO: check
 CVE-2015-7909
 	RESERVED
 CVE-2015-7908
@@ -1103,8 +1218,8 @@
 	RESERVED
 CVE-2015-7846
 	RESERVED
-CVE-2015-7845
-	RESERVED
+CVE-2015-7845 (The exception handling mechanism in the CLI Module in Huawei eSpace ...)
+	TODO: check
 CVE-2015-7844
 	RESERVED
 CVE-2015-7843
@@ -1323,12 +1438,12 @@
 	RESERVED
 CVE-2015-7774 (PC-EGG pWebManager before 3.3.10, and before 2.2.2 for PHP 4.x, allows ...)
 	TODO: check
-CVE-2015-7773
-	RESERVED
-CVE-2015-7772
-	RESERVED
-CVE-2015-7771
-	RESERVED
+CVE-2015-7773 (Unrestricted file upload vulnerability in the Panel component in ...)
+	TODO: check
+CVE-2015-7772 (Cross-site scripting (XSS) vulnerability in the runtime engine in the ...)
+	TODO: check
+CVE-2015-7771 (Cross-site scripting (XSS) vulnerability in the runtime engine in the ...)
+	TODO: check
 CVE-2015-7770 (Dell SonicWall TotalSecure TZ 100 devices with firmware before ...)
 	TODO: check
 CVE-2015-7769
@@ -1479,8 +1594,7 @@
 	TODO: check
 CVE-2015-7706
 	RESERVED
-CVE-2014-9756 [DoS/divide-by-zero]
-	RESERVED
+CVE-2014-9756 (The psf_fwrite function in file_io.c in libsndfile allows attackers to ...)
 	- libsndfile 1.0.25-10 (bug #804447)
 	NOTE: https://github.com/erikd/libsndfile/commit/725c7dbb95bfaf8b4bb7b04820e3a00cceea9ce6
 CVE-2014-9753
@@ -2287,8 +2401,8 @@
 	NOT-FOR-US: ZOHO ManageEngine EventLog Analyzer
 CVE-2015-7386 (Multiple cross-site scripting (XSS) vulnerabilities in ...)
 	NOT-FOR-US: Gallery - Photo Albums - Portfolio plugin for WordPress
-CVE-2015-7385
-	RESERVED
+CVE-2015-7385 (Cross-site scripting (XSS) vulnerability in Open-Xchange OX Guard ...)
+	TODO: check
 CVE-2015-7384 [HTTP Denial of Service Vulnerability]
 	RESERVED
 	- nodejs 4.1.1~dfsg-3 (bug #800580)
@@ -10936,8 +11050,8 @@
 	RESERVED
 CVE-2015-4113
 	RESERVED
-CVE-2015-4112
-	RESERVED
+CVE-2015-4112 (The Management Console in BlackBerry Enterprise Server (BES) 12 before ...)
+	TODO: check
 CVE-2015-4111 (mc_demux_mp4_ds.ax in an unspecified third-party codec demux in ...)
 	NOT-FOR-US: BlackBerry
 CVE-2015-4110
@@ -21772,8 +21886,8 @@
 	RESERVED
 CVE-2015-0795 (Multiple stack-based buffer overflows in the SafeShellExecute method ...)
 	NOT-FOR-US: NetIQ
-CVE-2015-0794
-	RESERVED
+CVE-2015-0794 (modules.d/90crypt/module-setup.sh in the dracut package before ...)
+	TODO: check
 CVE-2015-0793
 	RESERVED
 CVE-2015-0792




More information about the Secure-testing-commits mailing list