[Secure-testing-commits] r51202 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Apr 30 05:59:28 UTC 2017


Author: carnil
Date: 2017-04-30 05:59:28 +0000 (Sun, 30 Apr 2017)
New Revision: 51202

Modified:
   data/CVE/list
Log:
Process more NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-30 05:54:58 UTC (rev 51201)
+++ data/CVE/list	2017-04-30 05:59:28 UTC (rev 51202)
@@ -3,11 +3,11 @@
 	NOTE: https://github.com/Kozea/Radicale/commit/190b1dd795f0c552a4992445a231da760211183b (1.1.x)
 	NOTE: https://github.com/Kozea/Radicale/commit/059ba8dec1f22ccbeab837e288b3833a099cee2d (master)
 CVE-2017-8327 (The bmpr_read_uncompressed function in imagew-bmp.c in ...)
-	TODO: check
+	NOT-FOR-US: ImageWorsener
 CVE-2017-8326 (libimageworsener.a in ImageWorsener before 1.3.1 has "left shift cannot ...)
-	TODO: check
+	NOT-FOR-US: ImageWorsener
 CVE-2017-8325 (The iw_process_cols_to_intermediate function in imagew-main.c in ...)
-	TODO: check
+	NOT-FOR-US: ImageWorsener
 CVE-2017-8324
 	RESERVED
 CVE-2017-8323
@@ -816,7 +816,7 @@
 	NOTE: The issue seems covered in prior versions of upstream dccd9290745345896e3a4a73154576a599fd8b7b
 	NOTE: which is CVE-2017-6440.
 CVE-2017-7981 (Tuleap before 9.7 allows command injection via the PhpWiki 1.3.10 ...)
-	TODO: check
+	NOT-FOR-US: Enalean Tuleap
 CVE-2017-7980
 	RESERVED
 	- qemu 1:2.8+dfsg-4




More information about the Secure-testing-commits mailing list