[Secure-testing-commits] r50484 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Apr 9 13:49:06 UTC 2017


Author: carnil
Date: 2017-04-09 13:49:06 +0000 (Sun, 09 Apr 2017)
New Revision: 50484

Modified:
   data/CVE/list
Log:
Triage CVE-2017-0553 from Android, affects libnl3

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-09 11:32:20 UTC (rev 50483)
+++ data/CVE/list	2017-04-09 13:49:06 UTC (rev 50484)
@@ -18464,7 +18464,9 @@
 CVE-2017-0554 (An elevation of privilege vulnerability in the Telephony component ...)
 	NOT-FOR-US: Android
 CVE-2017-0553 (An elevation of privilege vulnerability in libnl could enable a local ...)
-	TODO: check
+	- libnl3 <unfixed>
+	NOTE: Fixed by: http://git.infradead.org/users/tgr/libnl.git/commit/3e18948f17148e6a3c4255bdeaaf01ef6081ceeb
+	NOTE: Fix via Android: https://android.googlesource.com/platform/external/libnl/+/f83d9c1c67b6be69a96995e384f50b572b667df0
 CVE-2017-0552 (A remote denial of service vulnerability in libavc in Mediaserver ...)
 	TODO: check
 CVE-2017-0551 (A remote denial of service vulnerability in libavc in Mediaserver ...)




More information about the Secure-testing-commits mailing list