[Secure-testing-commits] r40956 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sat Apr 16 15:51:08 UTC 2016


Author: jmm
Date: 2016-04-16 15:51:08 +0000 (Sat, 16 Apr 2016)
New Revision: 40956

Modified:
   data/CVE/list
Log:
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-15 21:10:11 UTC (rev 40955)
+++ data/CVE/list	2016-04-16 15:51:08 UTC (rev 40956)
@@ -19,15 +19,15 @@
 CVE-2016-4019
 	RESERVED
 CVE-2016-4018 (The Data Provisioning Agent (aka DP Agent) in SAP HANA does not ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-4017 (The Data Provisioning Agent (aka DP Agent) in SAP HANA allows remote ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-4016 (Cross-site scripting (XSS) vulnerability in SAP Manufacturing ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-4015 (The Enqueue Server in SAP NetWeaver JAVA AS 7.1 through 7.4 allows ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-4014 (XML external entity (XXE) vulnerability in the UDDI component in SAP ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-XXXX [ZF2016-01: Potential Insufficient Entropy Vulnerability in ZF1]
 	- zendframework 1.12.18+dfsg-1
 	[jessie] - zendframework <no-dsa> (Minor issue)
@@ -151,11 +151,11 @@
 CVE-2016-3983 (McAfee Advanced Threat Defense (ATD) before 3.4.8.178 might allow ...)
 	TODO: check
 CVE-2016-3980 (The Java Startup Framework (aka jstart) in SAP JAVA AS 7.4 allows ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-3979 (Internet Communication Manager (aka ICMAN or ICM) in SAP JAVA AS 7.4 ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-3978 (The Web User Interface (WebUI) in FortiOS 5.0.x before 5.0.13, 5.2.x ...)
-	TODO: check
+	NOT-FOR-US: FortiOS
 CVE-2015-8841 (Heap-based buffer overflow in the Archive support module in ESET NOD32 ...)
 	TODO: check
 CVE-2016-4002 [net: buffer overflow in MIPSnet emulator]




More information about the Secure-testing-commits mailing list