[Secure-testing-commits] r40894 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Apr 12 17:08:25 UTC 2016


Author: carnil
Date: 2016-04-12 17:08:24 +0000 (Tue, 12 Apr 2016)
New Revision: 40894

Modified:
   data/CVE/list
Log:
Add new samba issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-12 13:18:10 UTC (rev 40893)
+++ data/CVE/list	2016-04-12 17:08:24 UTC (rev 40894)
@@ -5223,8 +5223,10 @@
 	RESERVED
 CVE-2016-2119
 	RESERVED
-CVE-2016-2118
+CVE-2016-2118 [SAMR and LSA man in the middle attacks possible]
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2016-2118
 CVE-2016-2117 [memory disclosure to ethernet due to unchecked scatter/gather IO]
 	RESERVED
 	- linux <unfixed>
@@ -5236,16 +5238,28 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2016/03/03/12
 CVE-2016-2115
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2016-2115
 CVE-2016-2114
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2016-2114
 CVE-2016-2113
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2016-2113
 CVE-2016-2112
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2016-2112
 CVE-2016-2111
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2016-2111
 CVE-2016-2110
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2016-2110
 CVE-2016-2109
 	RESERVED
 CVE-2016-2108
@@ -20710,8 +20724,10 @@
 	NOT-FOR-US: AdNovum nevisAuth
 CVE-2015-5371 (The AuthenticationFilter class in SolarWinds Storage Manager allows ...)
 	NOT-FOR-US: SolarWinds
-CVE-2015-5370
+CVE-2015-5370 [Multiple errors in DCE-RPC code]
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2015-5370
 CVE-2015-5369 (Pulse Connect Secure (aka PCS and formerly Juniper PCS) PSC6000, ...)
 	NOT-FOR-US: Pulse Connect Secure / Juniper PCS
 CVE-2015-5368 (The HP lt4112 LTE/HSPA+ Gobi 4G module with firmware before ...)




More information about the Secure-testing-commits mailing list