[Secure-testing-commits] r50484 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Sun Apr 9 13:49:06 UTC 2017
Author: carnil
Date: 2017-04-09 13:49:06 +0000 (Sun, 09 Apr 2017)
New Revision: 50484
Modified:
data/CVE/list
Log:
Triage CVE-2017-0553 from Android, affects libnl3
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-04-09 11:32:20 UTC (rev 50483)
+++ data/CVE/list 2017-04-09 13:49:06 UTC (rev 50484)
@@ -18464,7 +18464,9 @@
CVE-2017-0554 (An elevation of privilege vulnerability in the Telephony component ...)
NOT-FOR-US: Android
CVE-2017-0553 (An elevation of privilege vulnerability in libnl could enable a local ...)
- TODO: check
+ - libnl3 <unfixed>
+ NOTE: Fixed by: http://git.infradead.org/users/tgr/libnl.git/commit/3e18948f17148e6a3c4255bdeaaf01ef6081ceeb
+ NOTE: Fix via Android: https://android.googlesource.com/platform/external/libnl/+/f83d9c1c67b6be69a96995e384f50b572b667df0
CVE-2017-0552 (A remote denial of service vulnerability in libavc in Mediaserver ...)
TODO: check
CVE-2017-0551 (A remote denial of service vulnerability in libavc in Mediaserver ...)
More information about the Secure-testing-commits
mailing list