[Secure-testing-commits] r50776 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Apr 18 21:20:25 UTC 2017


Author: jmm
Date: 2017-04-18 21:20:25 +0000 (Tue, 18 Apr 2017)
New Revision: 50776

Modified:
   data/CVE/list
Log:
new phassenger issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-18 21:18:23 UTC (rev 50775)
+++ data/CVE/list	2017-04-18 21:20:25 UTC (rev 50776)
@@ -11,9 +11,9 @@
 CVE-2017-7941 (The ReadSGIImage function in sgi.c in ImageMagick 7.0.5-4 allows remote ...)
 	- imagemagick <undetermined>
 CVE-2017-7940 (The iw_read_gif_file function in imagew-gif.c in libimageworsener.a in ...)
-	TODO: check
+	NOT-FOR-US: ImageWorsener
 CVE-2017-7939 (The read_next_pam_token function in imagew-pnm.c in libimageworsener.a ...)
-	TODO: check
+	NOT-FOR-US: ImageWorsener
 CVE-2017-7938
 	RESERVED
 CVE-2017-7937
@@ -99,11 +99,11 @@
 CVE-2017-7897 (A cross-site scripting (XSS) vulnerability in the MantisBT (2.3.x ...)
 	- mantis <removed>
 CVE-2017-7896 (Trend Micro InterScan Messaging Security Virtual Appliance (IMSVA) 9.1 ...)
-	TODO: check
+	NOT-FOR-US: Trend Micro
 CVE-2017-7895
 	RESERVED
 CVE-2016-10345 (In Phusion Passenger before 5.1.0, a known /tmp filename was used ...)
-	TODO: check
+	- passenger <unfixed>
 CVE-2016-10344
 	RESERVED
 CVE-2016-10343




More information about the Secure-testing-commits mailing list