[Secure-testing-commits] r43719 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Aug 2 19:09:24 UTC 2016


Author: carnil
Date: 2016-08-02 19:09:24 +0000 (Tue, 02 Aug 2016)
New Revision: 43719

Modified:
   data/CVE/list
Log:
Add first batch of new firefox issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-08-02 17:58:21 UTC (rev 43718)
+++ data/CVE/list	2016-08-02 19:09:24 UTC (rev 43719)
@@ -4019,8 +4019,14 @@
 	RESERVED
 CVE-2016-5252
 	RESERVED
+	- firefox <unfixed>
+	- firefox-esr <unfixed>
+	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-67/
 CVE-2016-5251
 	RESERVED
+	- firefox <unfixed>
+	- firefox-esr <not-affected> (Doesn't affect Firefox ESR)
+	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-66/
 CVE-2016-5250
 	RESERVED
 CVE-2016-5249 (Lenovo Solution Center (LSC) before 3.3.003 allows local users to ...)
@@ -11241,14 +11247,27 @@
 	NOTE: wheezy: User namespaces are non-functional.
 CVE-2016-2839
 	RESERVED
+	- firefox <unfixed>
+	- firefox-esr <unfixed>
+	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-65/
+	TODO: check details
 CVE-2016-2838
 	RESERVED
+	- firefox <unfixed>
+	- firefox-esr <unfixed>
+	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-64/
 CVE-2016-2837
 	RESERVED
 CVE-2016-2836
 	RESERVED
+	- firefox <unfixed>
+	- firefox-esr <unfixed>
+	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-62/
 CVE-2016-2835
 	RESERVED
+	- firefox <unfixed>
+	- firefox-esr <not-affected> (Doesn't apply to Firefox ESR)
+	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-62/
 CVE-2016-2834 (Mozilla Network Security Services (NSS) before 3.23, as used in ...)
 	{DLA-527-1}
 	- nss 2:3.23-1
@@ -11267,8 +11286,10 @@
 	- firefox 47.0-1
 CVE-2016-2830
 	RESERVED
-	NOTE: Contacted Red Hat to clarify entry at Red Hat's bugzilla: https://bugzilla.redhat.com/show_bug.cgi?id=1342897
-	NOTE: Possibly a different issue than CVE-2016-2831 for Mozilla products
+	- firefox <unfixed>
+	- firefox-esr <unfixed>
+	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-63/
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1342897
 CVE-2016-2829 (Mozilla Firefox before 47.0 allows remote attackers to spoof ...)
 	- firefox-esr <not-affected> (Doesn't apply to Firefox ESR)
 	- firefox 47.0-1




More information about the Secure-testing-commits mailing list