[Secure-testing-commits] r44932 - data/CVE

Nicholas Luedtke nluedtke-guest at moszumanska.debian.org
Wed Sep 28 19:18:14 UTC 2016


Author: nluedtke-guest
Date: 2016-09-28 19:18:14 +0000 (Wed, 28 Sep 2016)
New Revision: 44932

Modified:
   data/CVE/list
Log:
NFUs for Huawei devices

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-09-28 18:57:16 UTC (rev 44931)
+++ data/CVE/list	2016-09-28 19:18:14 UTC (rev 44932)
@@ -3514,13 +3514,13 @@
 	NOTE: Fixed by: http://git.qemu.org/?p=qemu.git;a=commit;h=56f101ecce0eafd09e2daf1c4eeb1377d6959261
 	NOTE: May as well need: http://git.qemu.org/?p=qemu.git;a=commit;h=fff39a7ad09da07ef490de05c92c91f22f8002f2
 CVE-2016-7110 (Huawei Unified Maintenance Audit (UMA) before V200R001C00SPC200 allows ...)
-	TODO: check
+	NOT-FOR-US: Huawei UMA
 CVE-2016-7109 (Huawei Unified Maintenance Audit (UMA) before V200R001C00SPC200 allows ...)
-	TODO: check
+	NOT-FOR-US: Huawei UMA
 CVE-2016-7108 (Huawei Unified Maintenance Audit (UMA) before V200R001C00SPC200 SPH206 ...)
-	TODO: check
+	NOT-FOR-US: Huawei UMA
 CVE-2016-7107 (Huawei Unified Maintenance Audit (UMA) before V200R001C00SPC200 SPH206 ...)
-	TODO: check
+	NOT-FOR-US: Huawei UMA
 CVE-2016-7106
 	RESERVED
 CVE-2016-7105
@@ -3978,13 +3978,13 @@
 CVE-2016-6904
 	RESERVED
 CVE-2016-6901 (Format string vulnerability in Huawei AR100, AR120, AR150, AR200, ...)
-	TODO: check
+	NOT-FOR-US: Huawei Routers
 CVE-2016-6900 (The Intelligent Baseboard Management Controller (iBMC) in Huawei ...)
-	TODO: check
+	NOT-FOR-US: Huawei FusionServer
 CVE-2016-6899 (The Intelligent Baseboard Management Controller (iBMC) in Huawei ...)
-	TODO: check
+	NOT-FOR-US: Huawei FusionServer
 CVE-2016-6898 (XML external entity (XXE) vulnerability in the Hyper Management Module ...)
-	TODO: check
+	NOT-FOR-US: Huawei FusionServer
 CVE-2016-6895
 	REJECTED
 CVE-2016-6894
@@ -4111,19 +4111,19 @@
 CVE-2016-6840 (Cross-site scripting (XSS) vulnerability in the management interface ...)
 	TODO: check
 CVE-2016-6839 (CRLF injection vulnerability in Huawei FusionAccess before V100R006C00 ...)
-	TODO: check
+	NOT-FOR-US: Huawei FusionAccess
 CVE-2016-6838 (Huawei X6800 and XH620 V3 servers with software before ...)
-	TODO: check
+	NOT-FOR-US: Huawei FusionServer
 CVE-2016-6829
 	RESERVED
 CVE-2016-6827 (Huawei FusionCompute before V100R005C10CP7002 stores cleartext AES ...)
-	TODO: check
+	NOT-FOR-US: Huawei FusionCompute
 CVE-2016-6826 (Huawei AnyMail before 2.6.0301.0060 allows remote attackers to cause a ...)
-	TODO: check
+	NOT-FOR-US: Huawei AnyMail
 CVE-2016-6825 (Huawei XH620 V3, XH622 V3, and XH628 V3 servers with software before ...)
-	TODO: check
+	NOT-FOR-US: Huawei FusionServer Node
 CVE-2016-6824 (Huawei AC6003, AC6005, AC6605, and ACU2 access controllers with ...)
-	TODO: check
+	NOT-FOR-US: Huawei Campus Switch
 CVE-2016-6888 [net: vmxnet: integer overflow in packet initialisation]
 	RESERVED
 	- qemu 1:2.6+dfsg-3.1 (bug #834902)




More information about the Secure-testing-commits mailing list