[Secure-testing-commits] r40137 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Thu Mar 3 09:10:12 UTC 2016


Author: sectracker
Date: 2016-03-03 09:10:12 +0000 (Thu, 03 Mar 2016)
New Revision: 40137

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-03-03 05:51:27 UTC (rev 40136)
+++ data/CVE/list	2016-03-03 09:10:12 UTC (rev 40137)
@@ -1,3 +1,131 @@
+CVE-2016-2839
+	RESERVED
+CVE-2016-2838
+	RESERVED
+CVE-2016-2837
+	RESERVED
+CVE-2016-2836
+	RESERVED
+CVE-2016-2835
+	RESERVED
+CVE-2016-2834
+	RESERVED
+CVE-2016-2833
+	RESERVED
+CVE-2016-2832
+	RESERVED
+CVE-2016-2831
+	RESERVED
+CVE-2016-2830
+	RESERVED
+CVE-2016-2829
+	RESERVED
+CVE-2016-2828
+	RESERVED
+CVE-2016-2827
+	RESERVED
+CVE-2016-2826
+	RESERVED
+CVE-2016-2825
+	RESERVED
+CVE-2016-2824
+	RESERVED
+CVE-2016-2823
+	RESERVED
+CVE-2016-2822
+	RESERVED
+CVE-2016-2821
+	RESERVED
+CVE-2016-2820
+	RESERVED
+CVE-2016-2819
+	RESERVED
+CVE-2016-2818
+	RESERVED
+CVE-2016-2817
+	RESERVED
+CVE-2016-2816
+	RESERVED
+CVE-2016-2815
+	RESERVED
+CVE-2016-2814
+	RESERVED
+CVE-2016-2813
+	RESERVED
+CVE-2016-2812
+	RESERVED
+CVE-2016-2811
+	RESERVED
+CVE-2016-2810
+	RESERVED
+CVE-2016-2809
+	RESERVED
+CVE-2016-2808
+	RESERVED
+CVE-2016-2807
+	RESERVED
+CVE-2016-2806
+	RESERVED
+CVE-2016-2805
+	RESERVED
+CVE-2016-2804
+	RESERVED
+CVE-2016-2803
+	RESERVED
+CVE-2016-2802
+	RESERVED
+CVE-2016-2801
+	RESERVED
+CVE-2016-2800
+	RESERVED
+CVE-2016-2799
+	RESERVED
+CVE-2016-2798
+	RESERVED
+CVE-2016-2797
+	RESERVED
+CVE-2016-2796
+	RESERVED
+CVE-2016-2795
+	RESERVED
+CVE-2016-2794
+	RESERVED
+CVE-2016-2793
+	RESERVED
+CVE-2016-2792
+	RESERVED
+CVE-2016-2791
+	RESERVED
+CVE-2016-2790
+	RESERVED
+CVE-2016-2789
+	RESERVED
+CVE-2015-8829
+	RESERVED
+CVE-2015-8828
+	RESERVED
+CVE-2015-8827
+	RESERVED
+CVE-2015-8826
+	RESERVED
+CVE-2015-8825
+	RESERVED
+CVE-2015-8824
+	RESERVED
+CVE-2015-8823
+	RESERVED
+CVE-2015-8822
+	RESERVED
+CVE-2015-8821
+	RESERVED
+CVE-2015-8820
+	RESERVED
+CVE-2015-8819
+	RESERVED
+CVE-2015-8818
+	RESERVED
+CVE-2015-8817
+	RESERVED
 CVE-2016-2841 [net: ne2000: infinite loop in ne2000_receive]
 	- qemu <unfixed>
 	- qemu-kvm <removed>
@@ -1574,10 +1702,10 @@
 	RESERVED
 CVE-2016-2280
 	RESERVED
-CVE-2016-2279
-	RESERVED
-CVE-2016-2278
-	RESERVED
+CVE-2016-2279 (Cross-site scripting (XSS) vulnerability in the web server in Rockwell ...)
+	TODO: check
+CVE-2016-2278 (Schneider Electric Struxureware Building Operations Automation Server ...)
+	TODO: check
 CVE-2016-2277
 	RESERVED
 CVE-2016-2276
@@ -6276,8 +6404,7 @@
 	TODO: check
 CVE-2016-0801 (The Broadcom Wi-Fi driver in the kernel in Android 4.x before 4.4.4, ...)
 	TODO: check
-CVE-2016-0800 [Cross-protocol attack on TLS using SSLv2 (DROWN)]
-	RESERVED
+CVE-2016-0800 (The SSLv2 protocol, as used in OpenSSL before 1.0.1s and 1.0.2 before ...)
 	- openssl 1.0.0c-2
 	- nss 3.13
 	NOTE: openssl 1.0.0c-2 dropped SSLv2 support
@@ -6636,13 +6763,11 @@
 	[squeeze] - openssl <not-affected> (vulnerable code not present)
 	NOTE: Fixed in master in https://git.openssl.org/?p=openssl.git;a=commit;h=ab4a81f69ec88d06c9d8de15326b9296d7f498ed
 	NOTE: https://www.openssl.org/news/secadv/20160301.txt
-CVE-2016-0704 [Bleichenbacher oracle in SSLv2]
-	RESERVED
+CVE-2016-0704 (An oracle protection mechanism in the get_client_master_key function ...)
 	- openssl 1.0.0c-2
 	NOTE: 1.0.0c-2 dropped SSLv2 support
 	NOTE: https://www.openssl.org/news/secadv/20160301.txt
-CVE-2016-0703 [Divide-and-conquer session key recovery in SSLv2]
-	RESERVED
+CVE-2016-0703 (The get_client_master_key function in s2_srvr.c in the SSLv2 ...)
 	- openssl 1.0.0c-2
 	NOTE: 1.0.0c-2 dropped SSLv2 support
 	NOTE: https://www.openssl.org/news/secadv/20160301.txt




More information about the Secure-testing-commits mailing list