[Secure-testing-commits] r46793 - data/CVE

Luciano Bello luciano at moszumanska.debian.org
Mon Dec 5 17:29:37 UTC 2016


Author: luciano
Date: 2016-12-05 17:29:37 +0000 (Mon, 05 Dec 2016)
New Revision: 46793

Modified:
   data/CVE/list
Log:
easy TODOs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-05 17:14:48 UTC (rev 46792)
+++ data/CVE/list	2016-12-05 17:29:37 UTC (rev 46793)
@@ -5754,17 +5754,18 @@
 CVE-2016-9568
 	RESERVED
 CVE-2016-9567 (The mDNIe system service on Samsung Mobile S7 devices with M(6.0) ...)
-	TODO: check
+	NOT-FOR-US: Samsung
 CVE-2016-9566
 	RESERVED
 CVE-2016-9565
 	RESERVED
 CVE-2016-9564 (Buffer overflow in send_redirect() in Boa Webserver 0.92r allows ...)
-	TODO: check
+	- boa <not-affected> (the vuln was removed in 0.93.14)
+	NOTE: http://www.ljcusack.io/cve-2016-9564-stack-based-buffer-overflow-in-boa-0-dot-92r
 CVE-2016-9563 (BC-BMT-BPM-DSK in SAP NetWeaver AS JAVA 7.5 allows remote authenticated ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-9562 (SAP NetWeaver AS JAVA 7.4 allows remote attackers to cause a Denial of ...)
-	TODO: check
+	NOT-FOR-US: SAP
 CVE-2016-9561
 	RESERVED
 CVE-2016-9554
@@ -6146,7 +6147,7 @@
 	- linux 4.8.11-1
 	NOTE: Fixed by: https://git.kernel.org/linus/bf911e985d6bbaa328c20c3e05f4eb03de11fdd6 (4.9-rc4)
 CVE-2016-9481 (In framework/modules/core/controllers/expCommentController.php of ...)
-	TODO: check
+	NOT-FOR-US: Exponent CMS
 CVE-2016-9480 (libdwarf 2016-10-21 allows context-dependent attackers to obtain ...)
 	- dwarfutils 20161124-1
 	[jessie] - dwarfutils <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list