[Secure-testing-commits] r40703 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Fri Apr 1 21:10:14 UTC 2016


Author: sectracker
Date: 2016-04-01 21:10:14 +0000 (Fri, 01 Apr 2016)
New Revision: 40703

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-01 17:20:30 UTC (rev 40702)
+++ data/CVE/list	2016-04-01 21:10:14 UTC (rev 40703)
@@ -1,3 +1,7 @@
+CVE-2016-3944
+	RESERVED
+CVE-2016-3943
+	RESERVED
 CVE-2016-3942
 	RESERVED
 CVE-2016-3940
@@ -577,6 +581,7 @@
 CVE-2016-3662
 	RESERVED
 CVE-2015-8838
+	RESERVED
 	- php5 5.6.11+dfsg-1
 	[jessie] - php5 5.6.12+dfsg-0+deb8u1
 	[wheezy] - php5 5.4.44-0+deb7u1
@@ -2445,8 +2450,7 @@
 	{DSA-3500-1}
 	- openssl 1.0.2g-1
 	NOTE: split from CVE-2016-0799
-CVE-2016-3142 [Out-of-Bound Read in phar_parse_zipfile()]
-	RESERVED
+CVE-2016-3142 (The phar_parse_zipfile function in zip.c in the PHAR extension in PHP ...)
 	- php5 5.6.19+dfsg-1
 	[wheezy] - php5 <no-dsa> (Minor issue, can be fixed in next update round)
 	[jessie] - php5 <no-dsa> (Minor issue, will be fixed in point update)
@@ -2455,8 +2459,7 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2016/03/10/5
 	NOTE: http://www.openwall.com/lists/oss-security/2016/03/13/2
 	NOTE: https://git.php.net/?p=php-src.git;a=commit;h=a6fdc5bb27b20d889de0cd29318b3968aabb57bd
-CVE-2016-3141 [Use-After-Free / Double-Free in WDDX Deserialize]
-	RESERVED
+CVE-2016-3141 (Use-after-free vulnerability in wddx.c in the WDDX extension in PHP ...)
 	- php5 5.6.19+dfsg-1
 	[wheezy] - php5 <no-dsa> (Minor issue, can be fixed in next update round)
 	[jessie] - php5 <no-dsa> (Minor issue, will be fixed in point update)
@@ -7382,8 +7385,7 @@
 	NOT-FOR-US: Cisco IOS
 CVE-2016-1346
 	RESERVED
-CVE-2016-1345
-	RESERVED
+CVE-2016-1345 (Cisco FireSIGHT System Software 5.4.0 through 6.0.1 and ASA with ...)
 	NOT-FOR-US: Cisco Firepower
 CVE-2016-1344 (The IKEv2 implementation in Cisco IOS 15.0 through 15.6 and IOS XE 3.3 ...)
 	NOT-FOR-US: Cisco IOS




More information about the Secure-testing-commits mailing list