[Secure-testing-commits] r50879 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri Apr 21 09:21:39 UTC 2017


Author: jmm
Date: 2017-04-21 09:21:39 +0000 (Fri, 21 Apr 2017)
New Revision: 50879

Modified:
   data/CVE/list
Log:
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-21 09:19:54 UTC (rev 50878)
+++ data/CVE/list	2017-04-21 09:21:39 UTC (rev 50879)
@@ -1,7 +1,7 @@
 CVE-2017-7991
 	RESERVED
 CVE-2017-7990 (The Reporting Module 1.12.0 for OpenMRS allows CSRF attacks with ...)
-	TODO: check
+	NOT-FOR-US: OpenMRS
 CVE-2017-7989
 	RESERVED
 CVE-2017-7988
@@ -83,7 +83,7 @@
 CVE-2017-7952
 	RESERVED
 CVE-2017-7951 (WonderCMS before 2.0.3 has CSRF because of lack of a token in an ...)
-	TODO: check
+	NOT-FOR-US: WonderCMS
 CVE-2017-7950
 	RESERVED
 CVE-2017-7949
@@ -136,7 +136,7 @@
 CVE-2017-7939 (The read_next_pam_token function in imagew-pnm.c in libimageworsener.a ...)
 	NOT-FOR-US: ImageWorsener
 CVE-2017-7938 (Stack-based buffer overflow in DMitry (Deepmagic Information Gathering ...)
-	TODO: check
+	NOT-FOR-US: DMitry
 CVE-2017-7937
 	RESERVED
 CVE-2017-7936
@@ -1610,7 +1610,7 @@
 CVE-2017-7410 (Multiple SQL injection vulnerabilities in account/signup.php and ...)
 	NOT-FOR-US: WebsiteBaker
 CVE-2017-7409 (Palo Alto Networks PAN-OS before 7.0.15 has XSS in the GlobalProtect ...)
-	TODO: check
+	NOT-FOR-US: Palo Alto Networks
 CVE-2017-7408 (Palo Alto Networks Traps ESM Console before 3.4.4 allows attackers to ...)
 	NOT-FOR-US: Palo Alto Networks Traps ESM Console
 CVE-2017-7407 (The ourWriteOut function in tool_writeout.c in curl 7.53.1 might allow ...)
@@ -2398,7 +2398,7 @@
 CVE-2017-7221
 	RESERVED
 CVE-2017-7220 (OpenText Documentum Content Server allows superuser access via ...)
-	TODO: check
+	NOT-FOR-US: OpenText Documentum Content Server
 CVE-2017-7219 (A heap overflow vulnerability in Citrix NetScaler Gateway versions 10.1 ...)
 	NOT-FOR-US: Citrix
 CVE-2017-7218 (The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 ...)
@@ -3785,31 +3785,31 @@
 CVE-2017-6620
 	RESERVED
 CVE-2017-6619 (A vulnerability in the web-based GUI of Cisco Integrated Management ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6618 (A vulnerability in the web-based GUI of Cisco Integrated Management ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6617 (A vulnerability in the session identification management functionality ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6616 (A vulnerability in the web-based GUI of Cisco Integrated Management ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6615 (A vulnerability in the Simple Network Management Protocol (SNMP) ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6614 (A vulnerability in the file-download feature of the web user interface ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6613 (A vulnerability in the DNS input packet processor for Cisco Prime ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6612
 	RESERVED
 CVE-2017-6611 (A vulnerability in the web framework code of Cisco Prime Infrastructure ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6610 (A vulnerability in the Internet Key Exchange Version 1 (IKEv1) XAUTH ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6609 (A vulnerability in the IPsec code of Cisco ASA Software could allow an ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6608 (A vulnerability in the Secure Sockets Layer (SSL) and Transport Layer ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6607 (A vulnerability in the DNS code of Cisco ASA Software could allow an ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-6606 (A vulnerability in a startup script of Cisco IOS XE Software could ...)
 	NOT-FOR-US: Cisco
 CVE-2017-6605
@@ -8632,7 +8632,7 @@
 CVE-2017-5191
 	RESERVED
 CVE-2017-5190 (NetIQ Access Manager 4.2 before SP3 HF1 and 4.3 before SP1 HF1, when ...)
-	TODO: check
+	NOT-FOR-US: NetIQ Access Manager
 CVE-2017-5189
 	RESERVED
 CVE-2017-5188
@@ -8646,7 +8646,7 @@
 CVE-2017-5184 (A vulnerability was discovered in NetIQ Sentinel Server 8.0 before ...)
 	NOT-FOR-US: NetIQ Sentinel
 CVE-2017-5183 (NetIQ Access Manager 4.2.2 and 4.3.x before 4.3.1+, when configured as ...)
-	TODO: check
+	NOT-FOR-US: NetIQ Access Manager
 CVE-2017-5182 (Remote Manager in Open Enterprise Server (OES) allows unauthenticated ...)
 	NOT-FOR-US: Open Enterprise Server
 CVE-2017-5181
@@ -11730,13 +11730,13 @@
 CVE-2017-3864 (A vulnerability in the DHCP client implementation of Cisco IOS (12.2, ...)
 	NOT-FOR-US: Cisco
 CVE-2017-3863 (Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-3862 (Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-3861 (Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-3860 (Multiple vulnerabilities in the EnergyWise module of Cisco IOS (12.2 ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-3859 (A vulnerability in the DHCP code for the Zero Touch Provisioning ...)
 	NOT-FOR-US: Cisco
 CVE-2017-3858 (A vulnerability in the web framework of Cisco IOS XE Software could ...)
@@ -11840,7 +11840,7 @@
 CVE-2017-3809 (A vulnerability in the Policy deployment module of the Cisco Firepower ...)
 	NOT-FOR-US: Cisco Firepower Management Center
 CVE-2017-3808 (A vulnerability in the Session Initiation Protocol (SIP) UDP throttling ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-3807 (A vulnerability in Common Internet Filesystem (CIFS) code in the ...)
 	NOT-FOR-US: Cisco
 CVE-2017-3806 (A vulnerability in CLI command processing in the Cisco Firepower 4100 ...)
@@ -11870,7 +11870,7 @@
 CVE-2017-3794 (A vulnerability in Cisco WebEx Meetings Server could allow an ...)
 	NOT-FOR-US: Cisco
 CVE-2017-3793 (A vulnerability in the TCP normalizer of Cisco Adaptive Security ...)
-	TODO: check
+	NOT-FOR-US: Cisco
 CVE-2017-3792 (A vulnerability in a proprietary device driver in the kernel of Cisco ...)
 	NOT-FOR-US: Cisco TelePresence
 CVE-2017-3791 (A vulnerability in the web-based GUI of Cisco Prime Home could allow an ...)
@@ -12119,11 +12119,11 @@
 CVE-2016-9981
 	RESERVED
 CVE-2016-9980 (IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2016-9979 (IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2016-9978 (IBM Curam Social Program Management 5.2, 6.0, and 7.0 could allow an ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2016-9977
 	RESERVED
 CVE-2016-9976




More information about the Secure-testing-commits mailing list