[Secure-testing-commits] r44220 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Aug 30 06:21:11 UTC 2016


Author: carnil
Date: 2016-08-30 06:21:11 +0000 (Tue, 30 Aug 2016)
New Revision: 44220

Modified:
   data/CVE/list
Log:
Add CVE-2016-7111/mantis

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-08-30 05:19:24 UTC (rev 44219)
+++ data/CVE/list	2016-08-30 06:21:11 UTC (rev 44220)
@@ -1,6 +1,10 @@
 CVE-2016-XXXX [allows the 'amanda' user to execute any code as root, and to execute an interactive shell as root]
 	- amanda 1:3.3.9-1
 	TODO: check
+CVE-2016-7111
+	- mantis <not-affected> (Vulnerable code introduced in 1.3.0-rc.2)
+	NOTE: https://github.com/mantisbt/mantisbt/commit/b3511d2feb47eaee41feb5f69cf3c8a2c9acd229
+	NOTE: https://mantisbt.org/bugs/view.php?id=21263
 CVE-2016-7103
 	- jqueryui <unfixed>
 	NOTE: https://nodesecurity.io/advisories/127




More information about the Secure-testing-commits mailing list