[Secure-testing-commits] r50777 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Apr 18 21:22:04 UTC 2017


Author: jmm
Date: 2017-04-18 21:22:04 +0000 (Tue, 18 Apr 2017)
New Revision: 50777

Modified:
   data/CVE/list
Log:
new Linux issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-18 21:20:25 UTC (rev 50776)
+++ data/CVE/list	2017-04-18 21:22:04 UTC (rev 50777)
@@ -104,6 +104,7 @@
 	RESERVED
 CVE-2016-10345 (In Phusion Passenger before 5.1.0, a known /tmp filename was used ...)
 	- passenger <unfixed>
+	NOTE: Likely unimportant due to kernel hardening, but needs further investigation
 CVE-2016-10344
 	RESERVED
 CVE-2016-10343
@@ -857,7 +858,7 @@
 CVE-2017-7646 (SolarWinds Log & Event Manager (LEM) before 6.3.1 Hotfix 4 allows an ...)
 	NOT-FOR-US: SolarWinds
 CVE-2017-7645 (The NFSv2/NFSv3 server in the nfsd subsystem in the Linux kernel ...)
-	TODO: check
+	- linux <unfixed>
 CVE-2017-7644
 	RESERVED
 CVE-2017-7643 (Proxifier for Mac before 2.19 allows local users to gain privileges ...)




More information about the Secure-testing-commits mailing list