[Secure-testing-commits] r54375 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Aug 7 07:24:51 UTC 2017


Author: carnil
Date: 2017-08-07 07:24:51 +0000 (Mon, 07 Aug 2017)
New Revision: 54375

Modified:
   data/CVE/list
Log:
Add note for CVE-2017-9299

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-07 05:33:46 UTC (rev 54374)
+++ data/CVE/list	2017-08-07 07:24:51 UTC (rev 54375)
@@ -8764,6 +8764,9 @@
 	NOTE: https://git.videolan.org/?p=vlc/vlc-2.2.git;a=commit;h=55a82442cfea9dab8b853f3a4610f2880c5fadf3
 CVE-2017-9299 (Open Ticket Request System (OTRS) 3.3.9 has XSS in ...)
 	- otrs2 <undetermined>
+	NOTE: The issue is most likely fixed in the 3.x series already before 3.3.17.
+	NOTE: The exact issue, fixing commits and upstream version was not yet tracked
+	NOTE: down.
 CVE-2017-9298 (Cross-site scripting vulnerability in Hitachi Device Manager before ...)
 	NOT-FOR-US: Hitacho Device Manager
 CVE-2017-9297 (Open Redirect vulnerability in Hitachi Device Manager before 8.5.2-01 ...)




More information about the Secure-testing-commits mailing list