[Secure-testing-commits] r46689 - data/CVE
security tracker role
sectracker at moszumanska.debian.org
Thu Dec 1 21:10:11 UTC 2016
Author: sectracker
Date: 2016-12-01 21:10:11 +0000 (Thu, 01 Dec 2016)
New Revision: 46689
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-12-01 20:59:31 UTC (rev 46688)
+++ data/CVE/list 2016-12-01 21:10:11 UTC (rev 46689)
@@ -3169,6 +3169,7 @@
RESERVED
CVE-2016-9079 [SVG Animation Remote Code Execution]
RESERVED
+ {DSA-3728-1}
- firefox 50.0.2-1
- firefox-esr 45.5.1esr-1
- icedove 1:45.5.1-1
@@ -3931,6 +3932,7 @@
NOT-FOR-US: Apache OpenMeetings
CVE-2016-8735 [remote code execution]
RESERVED
+ {DLA-729-1 DLA-728-1}
- tomcat9 <itp> (bug #802312)
- tomcat8 8.0.39-1
- tomcat7 7.0.72-3
@@ -10115,6 +10117,7 @@
- tomcat6 <not-affected> (Only affects 9.x and 8.5.x)
CVE-2016-6816 [information disclosure]
RESERVED
+ {DLA-729-1 DLA-728-1}
- tomcat9 <itp> (bug #802312)
- tomcat8 8.0.39-1
- tomcat7 7.0.72-3
@@ -10176,7 +10179,7 @@
RESERVED
CVE-2016-6797 [Apache Tomcat Unrestricted Access to Global Resources]
RESERVED
- {DSA-3721-1 DSA-3720-1}
+ {DSA-3721-1 DSA-3720-1 DLA-729-1 DLA-728-1}
- tomcat8 8.0.37-1 (low)
- tomcat7 7.0.72-1 (low; bug #842666)
- tomcat6 6.0.41-3 (low)
@@ -10187,7 +10190,7 @@
NOTE: Fixed by: https://svn.apache.org/viewvc?view=revision&revision=1757285 (6.0.x)
CVE-2016-6796 [Apache Tomcat Security Manager Bypass]
RESERVED
- {DSA-3721-1 DSA-3720-1}
+ {DSA-3721-1 DSA-3720-1 DLA-729-1 DLA-728-1}
- tomcat8 8.0.37-1 (low)
- tomcat7 7.0.72-1 (low; bug #842665)
- tomcat6 6.0.41-3 (low)
@@ -10200,7 +10203,7 @@
RESERVED
CVE-2016-6794 [Apache Tomcat System Property Disclosure]
RESERVED
- {DSA-3721-1 DSA-3720-1}
+ {DSA-3721-1 DSA-3720-1 DLA-729-1 DLA-728-1}
- tomcat8 8.0.37-1 (low)
- tomcat7 7.0.72-1 (low; bug #842664)
- tomcat6 6.0.41-3 (low)
@@ -16889,7 +16892,7 @@
NOT-FOR-US: Apache MyFaces Trinidad
CVE-2016-5018 [Apache Tomcat Security Manager Bypass]
RESERVED
- {DSA-3721-1 DSA-3720-1}
+ {DSA-3721-1 DSA-3720-1 DLA-729-1 DLA-728-1}
- tomcat8 8.0.37-1 (low)
- tomcat7 7.0.72-1 (low; bug #842663)
- tomcat6 6.0.41-3 (low)
@@ -30942,7 +30945,7 @@
NOTE: Fixed in 6.0.45, 7.0.68, 8.0.32, 9.0.0.M3
CVE-2016-0762 [Apache Tomcat Realm Timing Attack]
RESERVED
- {DSA-3721-1 DSA-3720-1}
+ {DSA-3721-1 DSA-3720-1 DLA-729-1 DLA-728-1}
- tomcat8 8.0.37-1 (low)
- tomcat7 7.0.72-1 (low; bug #842662)
- tomcat6 6.0.41-3 (low)
More information about the Secure-testing-commits
mailing list