[Secure-testing-commits] r54592 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Aug 11 05:27:04 UTC 2017


Author: carnil
Date: 2017-08-11 05:27:03 +0000 (Fri, 11 Aug 2017)
New Revision: 54592

Modified:
   data/CVE/list
Log:
Mark CVE-2017-1000031/cacti as no-dsa

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-11 04:15:49 UTC (rev 54591)
+++ data/CVE/list	2017-08-11 05:27:03 UTC (rev 54592)
@@ -4241,6 +4241,7 @@
 	NOTE: https://github.com/distributedweaknessfiling/DWF-CVE-Database/issues/27
 CVE-2017-1000031 (SQL injection vulnerability in graph_templates_inputs.php in Cacti ...)
 	- cacti 0.8.8e+ds1-1
+	[jessie] - cacti <ignored> (Minor issue, can be mitigated with Web Application Firewalls)
 	NOTE: https://www.trustwave.com/Resources/Security-Advisories/Advisories/TWSL2016-007/?fid=7789
 	NOTE: MITRE disagrees that this CVE is a duplicate of CVE-2014-4002 and CVE-2016-3172.
 	NOTE: MITRE believes that CVE-2017-1000031 is a different vulnerability than




More information about the Secure-testing-commits mailing list