[Secure-testing-commits] r45862 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Nov 2 06:16:51 UTC 2016


Author: carnil
Date: 2016-11-02 06:16:50 +0000 (Wed, 02 Nov 2016)
New Revision: 45862

Modified:
   data/CVE/list
Log:
Add information for CVE-2016-6664 / CVE-2016-5617

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-02 06:16:42 UTC (rev 45861)
+++ data/CVE/list	2016-11-02 06:16:50 UTC (rev 45862)
@@ -7128,6 +7128,14 @@
 	RESERVED
 CVE-2016-6664
 	RESERVED
+	- mariadb-10.0 <unfixed>
+	- mysql-5.7 5.7.15-1
+	- mysql-5.6 <unfixed> (bug #841049)
+	- mysql-5.5 <removed>
+	[jessie] - mysql-5.5 5.5.52-0+deb8u1
+	[wheezy] - mysql-5.5 5.5.52-0+deb7u1
+	NOTE: http://legalhackers.com/advisories/MySQL-Maria-Percona-RootPrivEsc-CVE-2016-6664-5617-Exploit.html
+	NOTE: Duplicate CVE from Oracle: CVE-2016-5617
 CVE-2016-6663
 	RESERVED
 	- mariadb-10.0 10.0.28-1
@@ -10972,12 +10980,13 @@
 CVE-2016-5618 (Unspecified vulnerability in the Oracle Data Integrator component in ...)
 	TODO: check
 CVE-2016-5617 (Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 ...)
-	- mariadb-10.0 <undetermined>
+	- mariadb-10.0 <unfixed>
 	- mysql-5.7 5.7.15-1
 	- mysql-5.6 <unfixed> (bug #841049)
 	- mysql-5.5 <removed>
 	[jessie] - mysql-5.5 5.5.52-0+deb8u1
 	[wheezy] - mysql-5.5 5.5.52-0+deb7u1
+	NOTE: This is a Oracle assigned duplicate for CVE-2016-6664
 CVE-2016-5616 (Unspecified vulnerability in Oracle MySQL 5.5.51 and earlier, 5.6.32 ...)
 	- mariadb-10.0 10.0.28-1
 	- mysql-5.7 5.7.15-1




More information about the Secure-testing-commits mailing list