[Secure-testing-commits] r42764 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Fri Jun 24 09:10:15 UTC 2016


Author: sectracker
Date: 2016-06-24 09:10:15 +0000 (Fri, 24 Jun 2016)
New Revision: 42764

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-06-24 07:55:57 UTC (rev 42763)
+++ data/CVE/list	2016-06-24 09:10:15 UTC (rev 42764)
@@ -1,3 +1,7 @@
+CVE-2016-5744
+	RESERVED
+CVE-2016-5743
+	RESERVED
 CVE-2016-5839 [... some less secure sanitize_file_name edge cases]
 	- wordpress 4.5.3+dfsg-1
 	NOTE: https://wordpress.org/news/2016/06/wordpress-4-5-3/
@@ -105,6 +109,7 @@
 	RESERVED
 	- phpmyadmin 4:4.6.3-1
 CVE-2016-5742 [SQL injection in MovableType xml-rpc interface]
+	RESERVED
 	- movabletype-opensource <removed>
 	NOTE: https://movabletype.org/news/2016/06/movable_type_626_and_613_released.html
 	NOTE: http://www.openwall.com/lists/oss-security/2016/06/22/3
@@ -13544,18 +13549,18 @@
 	RESERVED
 CVE-2016-1440
 	RESERVED
-CVE-2016-1439
-	RESERVED
-CVE-2016-1438
-	RESERVED
-CVE-2016-1437
-	RESERVED
-CVE-2016-1436
-	RESERVED
-CVE-2016-1435
-	RESERVED
-CVE-2016-1434
-	RESERVED
+CVE-2016-1439 (Cross-site scripting (XSS) vulnerability in the management interface ...)
+	TODO: check
+CVE-2016-1438 (Cisco AsyncOS 9.7.0-125 on Email Security Appliance (ESA) devices ...)
+	TODO: check
+CVE-2016-1437 (SQL injection vulnerability in the SQL database in Cisco Prime ...)
+	TODO: check
+CVE-2016-1436 (The General Packet Radio Switching Tunneling Protocol 1 (aka GTPv1) ...)
+	TODO: check
+CVE-2016-1435 (Cisco 8800 phones with software 11.0(1) do not properly enforce ...)
+	TODO: check
+CVE-2016-1434 (The license-certificate upload functionality on Cisco 8800 phones with ...)
+	TODO: check
 CVE-2016-1433
 	RESERVED
 CVE-2016-1432 (Cisco IOS XE 3.15S and 3.16S on cBR-8 Converged Broadband Router ...)
@@ -13566,8 +13571,8 @@
 	RESERVED
 CVE-2016-1429
 	RESERVED
-CVE-2016-1428
-	RESERVED
+CVE-2016-1428 (Double free vulnerability in Cisco IOS XE 3.15S, 3.16S, and 3.17S ...)
+	TODO: check
 CVE-2016-1427 (The System Configuration Protocol (SCP) core messaging interface in ...)
 	TODO: check
 CVE-2016-1426
@@ -15391,8 +15396,7 @@
 	NOT-FOR-US: EMC NetWorker
 CVE-2016-0915
 	RESERVED
-CVE-2016-0914
-	RESERVED
+CVE-2016-0914 (EMC Documentum WebTop 6.8 before Patch 13 and 6.8.1 before Patch 02, ...)
 	NOT-FOR-US: EMC Documentum WebTop and WebTop Clients
 CVE-2016-0913
 	RESERVED
@@ -24385,8 +24389,8 @@
 	NOT-FOR-US: Cisco
 CVE-2015-6290 (Cisco Web Security Appliance (WSA) 8.0.7 allows remote HTTP servers to ...)
 	NOT-FOR-US: Cisco
-CVE-2015-6289
-	RESERVED
+CVE-2015-6289 (Cisco IOS 15.5(3)M on Integrated Services Router (ISR) 800, 819, and ...)
+	TODO: check
 CVE-2015-6288 (Cisco Content Security Management Appliance (SMA) 7.8.0-000 does not ...)
 	NOT-FOR-US: Cisco
 CVE-2015-6287 (Cisco Web Security Appliance (WSA) 8.0.6-078 and 8.0.6-115 allows ...)




More information about the Secure-testing-commits mailing list