[Secure-testing-commits] r40770 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Apr 5 07:49:27 UTC 2016


Author: jmm
Date: 2016-04-05 07:49:27 +0000 (Tue, 05 Apr 2016)
New Revision: 40770

Modified:
   data/CVE/list
Log:
remove one pcre entry, won't get a CVE ID by MITRE


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-05 07:46:15 UTC (rev 40769)
+++ data/CVE/list	2016-04-05 07:49:27 UTC (rev 40770)
@@ -576,7 +576,8 @@
 CVE-2016-3680
 	RESERVED
 CVE-2016-3679 (Multiple unspecified vulnerabilities in Google V8 before 4.9.385.33, ...)
-	TODO: check
+	- libv8 <unfixed> (unimportant)
+	NOTE: libv8 not covered by security support
 CVE-2016-3678
 	RESERVED
 CVE-2016-3677
@@ -1186,7 +1187,7 @@
 CVE-2016-3398
 	RESERVED
 CVE-2014-9768 (** DISPUTED ** IBM Tivoli NetView Access Services (NVAS) allows remote ...)
-	TODO: check
+	NOT-FOR-US: Tivoli
 CVE-2016-3397
 	RESERVED
 CVE-2016-3396
@@ -4520,14 +4521,6 @@
 	- pcre2 <not-affected> (Vulnerable code not present)
 	NOTE: https://bugs.exim.org/show_bug.cgi?id=1780
 	NOTE: Possibly introduced after http://vcs.pcre.org/pcre?view=revision&revision=1266
-CVE-2016-XXXX [Heap buffer overflow in main function of pcretest.c]
-	- pcre3 <unfixed>
-	[jessie] - pcre3 <no-dsa> (Minor issue)
-	[wheezy] - pcre3 <no-dsa> (Minor issue)
-	[squeeze] - pcre3 <no-dsa> (Minor issue)
-	- pcre2 <not-affected> (Vulnerable code not present)
-	NOTE: https://bugs.exim.org/show_bug.cgi?id=1777
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/02/29/1
 CVE-2016-2242
 	RESERVED
 CVE-2016-2241




More information about the Secure-testing-commits mailing list