[Secure-testing-commits] r38965 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jan 16 09:21:07 UTC 2016


Author: carnil
Date: 2016-01-16 09:21:07 +0000 (Sat, 16 Jan 2016)
New Revision: 38965

Modified:
   data/CVE/list
Log:
More NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-01-16 09:17:38 UTC (rev 38964)
+++ data/CVE/list	2016-01-16 09:21:07 UTC (rev 38965)
@@ -5047,19 +5047,19 @@
 CVE-2016-0036
 	RESERVED
 CVE-2016-0035 (Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0034 (Microsoft Silverlight 5 before 5.1.41212.0 mishandles negative offsets ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0033
 	RESERVED
 CVE-2016-0032 (Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0031 (Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0030 (Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0029 (Cross-site scripting (XSS) vulnerability in Outlook Web Access (OWA) ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0028
 	RESERVED
 CVE-2016-0027
@@ -5069,7 +5069,7 @@
 CVE-2016-0025
 	RESERVED
 CVE-2016-0024 (The Chakra JavaScript engine in Microsoft Edge allows remote attackers ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0023
 	RESERVED
 CVE-2016-0022
@@ -5077,43 +5077,43 @@
 CVE-2016-0021
 	RESERVED
 CVE-2016-0020 (Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0019 (The Remote Desktop Protocol (RDP) service implementation in Microsoft ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0018 (Microsoft Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0017
 	RESERVED
 CVE-2016-0016 (Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0015 (DirectShow in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0014 (Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0013
 	RESERVED
 CVE-2016-0012 (Microsoft Office 2007 SP3, Excel 2007 SP3, PowerPoint 2007 SP3, Visio ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0011 (Microsoft SharePoint Server 2013 SP1 and SharePoint Foundation 2013 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0010 (Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0009 (Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0008 (The graphics device interface in Microsoft Windows Vista SP2, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0007 (The sandbox implementation in Microsoft Windows Vista SP2, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0006 (The sandbox implementation in Microsoft Windows Vista SP2, Windows ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0005 (Microsoft Internet Explorer 9 through 11 allows remote attackers to ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0004
 	RESERVED
 CVE-2016-0003 (Microsoft Edge allows remote attackers to execute arbitrary code via ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0002 (The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2016-0001
 	RESERVED
 CVE-2015-8480 (The VideoFramePool::PoolImpl::CreateFrame function in ...)
@@ -11358,33 +11358,33 @@
 CVE-2015-6178
 	RESERVED
 CVE-2015-6177 (Microsoft Excel 2007 SP3, Office Compatibility Pack SP3, and Excel ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6176 (Microsoft Edge mishandles HTML attributes in HTTP responses, which ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6175 (The kernel in Microsoft Windows 10 Gold allows local users to gain ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6174 (The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6173 (The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6172 (Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6171 (The kernel in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6170 (Microsoft Edge allows remote attackers to gain privileges via a ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6169 (Microsoft Edge misparses HTTP responses, which allows remote attackers ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6168 (Microsoft Edge allows remote attackers to execute arbitrary code or ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6167
 	RESERVED
 CVE-2015-6166 (Microsoft Silverlight 5 before 5.1.41105.00 allows remote attackers to ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6165 (Microsoft Silverlight 5 before 5.1.41105.00 allows remote attackers to ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6164 (Microsoft Internet Explorer 9 through 11 improperly implements a ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6163
 	RESERVED
 CVE-2015-6162 (Microsoft Internet Explorer 10 allows remote attackers to execute ...)
@@ -11460,7 +11460,7 @@
 CVE-2015-6127 (Windows Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, ...)
 	NOT-FOR-US: Windows Media Center
 CVE-2015-6126 (Race condition in the Pragmatic General Multicast (PGM) protocol ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6125 (Use-after-free vulnerability in the DNS server in Microsoft Windows ...)
 	NOT-FOR-US: Microsoft Windows
 CVE-2015-6124 (Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 ...)
@@ -11478,7 +11478,7 @@
 CVE-2015-6118 (Microsoft Office 2007 SP3 and Office 2010 SP2 allow remote attackers ...)
 	NOT-FOR-US: Microsoft Office
 CVE-2015-6117 (Microsoft SharePoint Server 2013 SP1 and SharePoint Foundation 2013 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6116
 	RESERVED
 CVE-2015-6115 (Microsoft .NET Framework 2.0 SP2, 3.5, and 3.5.1 allows remote ...)
@@ -11590,11 +11590,11 @@
 CVE-2015-6062
 	RESERVED
 CVE-2015-6061 (Cross-site scripting (XSS) vulnerability in Microsoft Skype for ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6060
 	RESERVED
 CVE-2015-6059 (The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6058 (Microsoft Edge mishandles HTML attributes in HTTP responses, which ...)
 	NOT-FOR-US: Microsoft Edge
 CVE-2015-6057 (Microsoft Edge allows remote attackers to obtain sensitive information ...)
@@ -11602,13 +11602,13 @@
 CVE-2015-6056 (The (1) JScript and (2) VBScript engines in Microsoft Internet ...)
 	NOT-FOR-US: Microsoft Internet Explorer
 CVE-2015-6055 (The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6054
 	RESERVED
 CVE-2015-6053 (Microsoft Internet Explorer 11 allows remote attackers to obtain ...)
 	NOT-FOR-US: Microsoft Internet Explorer
 CVE-2015-6052 (The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6051 (Microsoft Internet Explorer 10 and 11 allows remote attackers to gain ...)
 	NOT-FOR-US: Microsoft Internet Explorer
 CVE-2015-6050 (Microsoft Internet Explorer 10 allows remote attackers to execute ...)
@@ -11632,11 +11632,11 @@
 CVE-2015-6041
 	RESERVED
 CVE-2015-6040 (Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel for Mac 2011, Excel ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6039 (Cross-site scripting (XSS) vulnerability in Microsoft SharePoint ...)
 	NOT-FOR-US: Microsoft
 CVE-2015-6038 (Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 SP1, Excel 2013 ...)
-	TODO: check
+	NOT-FOR-US: Microsoft
 CVE-2015-6037 (Cross-site scripting (XSS) vulnerability in Microsoft Excel Services ...)
 	NOT-FOR-US: Microsoft
 CVE-2015-6036




More information about the Secure-testing-commits mailing list