[Secure-testing-commits] r50444 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Apr 7 18:51:07 UTC 2017


Author: carnil
Date: 2017-04-07 18:51:07 +0000 (Fri, 07 Apr 2017)
New Revision: 50444

Modified:
   data/CVE/list
Log:
Add bug reference for CVE-2017-7572/backintime

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-07 18:09:39 UTC (rev 50443)
+++ data/CVE/list	2017-04-07 18:51:07 UTC (rev 50444)
@@ -9,9 +9,10 @@
 CVE-2017-7573
 	RESERVED
 CVE-2017-7572 (The _checkPolkitPrivilege function in serviceHelper.py in Back In Time ...)
-	- backintime <unfixed>
+	- backintime <unfixed> (bug #859815)
 	[jessie] - backintime <no-dsa> (Minor issue)
 	NOTE: http://www.openwall.com/lists/oss-security/2017/04/07/2
+	NOTE: https://github.com/bit-team/backintime/commit/7f208dc547f569b689c888103e3b593a48cd1869
 CVE-2017-7571 (public/rolechangeadmin in Faveo 1.9.3 allows CSRF. The impact is ...)
 	NOT-FOR-US: Faveo
 CVE-2017-7570 (PivotX 2.3.11 allows remote authenticated Advanced users to execute ...)




More information about the Secure-testing-commits mailing list