[Secure-testing-commits] r51060 - data/CVE
security tracker role
sectracker at moszumanska.debian.org
Wed Apr 26 09:10:12 UTC 2017
Author: sectracker
Date: 2017-04-26 09:10:12 +0000 (Wed, 26 Apr 2017)
New Revision: 51060
Modified:
data/CVE/list
Log:
automatic update
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-04-26 08:43:10 UTC (rev 51059)
+++ data/CVE/list 2017-04-26 09:10:12 UTC (rev 51060)
@@ -1,4 +1,118 @@
-CVE-2017-8283 [Directory traversal in dpkg-source via indented patches on non-GNU systems]
+CVE-2017-8282
+ RESERVED
+CVE-2017-8281
+ RESERVED
+CVE-2017-8280
+ RESERVED
+CVE-2017-8279
+ RESERVED
+CVE-2017-8278
+ RESERVED
+CVE-2017-8277
+ RESERVED
+CVE-2017-8276
+ RESERVED
+CVE-2017-8275
+ RESERVED
+CVE-2017-8274
+ RESERVED
+CVE-2017-8273
+ RESERVED
+CVE-2017-8272
+ RESERVED
+CVE-2017-8271
+ RESERVED
+CVE-2017-8270
+ RESERVED
+CVE-2017-8269
+ RESERVED
+CVE-2017-8268
+ RESERVED
+CVE-2017-8267
+ RESERVED
+CVE-2017-8266
+ RESERVED
+CVE-2017-8265
+ RESERVED
+CVE-2017-8264
+ RESERVED
+CVE-2017-8263
+ RESERVED
+CVE-2017-8262
+ RESERVED
+CVE-2017-8261
+ RESERVED
+CVE-2017-8260
+ RESERVED
+CVE-2017-8259
+ RESERVED
+CVE-2017-8258
+ RESERVED
+CVE-2017-8257
+ RESERVED
+CVE-2017-8256
+ RESERVED
+CVE-2017-8255
+ RESERVED
+CVE-2017-8254
+ RESERVED
+CVE-2017-8253
+ RESERVED
+CVE-2017-8252
+ RESERVED
+CVE-2017-8251
+ RESERVED
+CVE-2017-8250
+ RESERVED
+CVE-2017-8249
+ RESERVED
+CVE-2017-8248
+ RESERVED
+CVE-2017-8247
+ RESERVED
+CVE-2017-8246
+ RESERVED
+CVE-2017-8245
+ RESERVED
+CVE-2017-8244
+ RESERVED
+CVE-2017-8243
+ RESERVED
+CVE-2017-8242
+ RESERVED
+CVE-2017-8241
+ RESERVED
+CVE-2017-8240
+ RESERVED
+CVE-2017-8239
+ RESERVED
+CVE-2017-8238
+ RESERVED
+CVE-2017-8237
+ RESERVED
+CVE-2017-8236
+ RESERVED
+CVE-2017-8235
+ RESERVED
+CVE-2017-8234
+ RESERVED
+CVE-2017-8233
+ RESERVED
+CVE-2017-8232
+ RESERVED
+CVE-2017-8231
+ RESERVED
+CVE-2017-8230
+ RESERVED
+CVE-2017-8229
+ RESERVED
+CVE-2017-8228
+ RESERVED
+CVE-2017-8227
+ RESERVED
+CVE-2017-8226
+ RESERVED
+CVE-2017-8283 (dpkg-source in dpkg through 1.8.23 is able to use a non-GNU patch ...)
- dpkg <unfixed> (unimportant)
NOTE: http://www.openwall.com/lists/oss-security/2017/04/20/2
CVE-2017-8225 (On Wireless IP Camera (P2P) WIFICAM devices, access to .ini files ...)
@@ -2546,8 +2660,8 @@
RESERVED
CVE-2017-7295
RESERVED
-CVE-2017-7293
- RESERVED
+CVE-2017-7293 (The Dolby DAX2 and DAX3 API services are vulnerable to a privilege ...)
+ TODO: check
CVE-2017-7294 (The vmw_surface_define_ioctl function in ...)
- linux 4.9.18-1
[jessie] - linux <no-dsa> (Will be fixed in point release)
@@ -8261,7 +8375,7 @@
- firefox 52.0.1-1
- firefox-esr 45.9.0esr-1
CVE-2017-5437
- RESERVED
+ REJECTED
- firefox <unfixed> (unimportant)
- firefox-esr 45.9.0esr-1 (unimportant)
NOTE: Since uses the system libevent library
@@ -54132,6 +54246,7 @@
CVE-2015-8273
RESERVED
CVE-2015-8272 (RTMPDump 2.4 allows remote attackers to trigger a denial of service ...)
+ {DLA-917-1}
- rtmpdump 2.4+20151223.gitfa8646d.1-1
NOTE: http://git.ffmpeg.org/gitweb/rtmpdump.git/commitdiff/4312322107a94c81d3ec5b98f91bc6b923551dc5
NOTE: http://www.talosintelligence.com/reports/TALOS-2016-0068/
@@ -54139,6 +54254,7 @@
NOTE: to missing upstream source import the fixes are really only present in
NOTE: 2.4+20151223.gitfa8646d.1-1
CVE-2015-8271 (The AMF3CD_AddProp function in amf.c in RTMPDump 2.4 allows remote ...)
+ {DLA-917-1}
- rtmpdump 2.4+20151223.gitfa8646d.1-1
NOTE: http://www.talosintelligence.com/reports/TALOS-2016-0067/
NOTE: http://git.ffmpeg.org/gitweb/rtmpdump.git/commitdiff/39ec7eda489717d503bc4cbfaa591c93205695b6
@@ -54147,6 +54263,7 @@
NOTE: to missing upstream source import the fixes are really only present in
NOTE: 2.4+20151223.gitfa8646d.1-1
CVE-2015-8270 (The AMF3ReadString function in amf.c in RTMPDump 2.4 allows remote ...)
+ {DLA-917-1}
- rtmpdump 2.4+20151223.gitfa8646d.1-1
NOTE: http://www.talosintelligence.com/reports/TALOS-2016-0066/
NOTE: http://git.ffmpeg.org/gitweb/rtmpdump.git/commitdiff/10b580aabcec1621b25518271ba1ab2b018be88e
More information about the Secure-testing-commits
mailing list