[Secure-testing-commits] r54696 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sat Aug 12 18:40:02 UTC 2017


Author: jmm
Date: 2017-08-12 18:40:01 +0000 (Sat, 12 Aug 2017)
New Revision: 54696

Modified:
   data/CVE/list
Log:
mark binutils issues as ignored


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-12 18:23:20 UTC (rev 54695)
+++ data/CVE/list	2017-08-12 18:40:01 UTC (rev 54696)
@@ -5956,14 +5956,14 @@
 	RESERVED
 CVE-2017-9955 (The get_build_id function in opncls.c in the Binary File Descriptor ...)
 	- binutils 2.29-1
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21665
 CVE-2017-9954 (The getvalue function in tekhex.c in the Binary File Descriptor (BFD) ...)
 	- binutils 2.29-1
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21670
 CVE-2017-9953 (There is an invalid free in Image::printIFDStructure that leads to a ...)
@@ -7944,106 +7944,106 @@
 	NOT-FOR-US: GRSecurity/PAX Linux specific assignment
 CVE-2017-9756 (The aarch64_ext_ldst_reglist function in opcodes/aarch64-dis.c in GNU ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21595
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=cd3ea7c69acc5045eb28f9bf80d923116e15e4f5
 CVE-2017-9755 (opcodes/i386-dis.c in GNU Binutils 2.28 does not consider the number of ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21594
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=0d96e4df4812c3bad77c229dfef47a9bc115ac12
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=8cac017d35ef374e65acc98818a17cf8a652cbd0
 CVE-2017-9754 (The process_otr function in bfd/versados.c in the Binary File ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21591
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=04f963fd489cae724a60140e13984415c205f4ac
 CVE-2017-9753 (The versados_mkobject function in bfd/versados.c in the Binary File ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21591
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=04f963fd489cae724a60140e13984415c205f4ac
 CVE-2017-9752 (bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21589
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=c53d2e6d744da000aaafe0237bced090aab62818
 CVE-2017-9751 (opcodes/rl78-decode.opc in GNU Binutils 2.28 has an unbounded GETBYTE ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21588
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=63323b5b23bd83fa7b04ea00dff593c933e9b0e3
 CVE-2017-9750 (opcodes/rx-decode.opc in GNU Binutils 2.28 lacks bounds checks for ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21587
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=db5fa770268baf8cc82cf9b141d69799fd485fe2
 CVE-2017-9749 (The *regs* macros in opcodes/bfin-dis.c in GNU Binutils 2.28 allow ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21586
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=08c7881b814c546efc3996fd1decdf0877f7a779
 CVE-2017-9748 (The ieee_object_p function in bfd/ieee.c in the Binary File Descriptor ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21582
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=63634bb4a107877dd08b6282e28e11cfd1a1649e
 CVE-2017-9747 (The ieee_archive_p function in bfd/ieee.c in the Binary File Descriptor ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21581
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=62b76e4b6e0b4cb5b3e0053d1de4097b32577049
 CVE-2017-9746 (The disassemble_bytes function in objdump.c in GNU Binutils 2.28 allows ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21580
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=ae87f7e73eba29bd38b3a9684a10b948ed715612
 CVE-2017-9745 (The _bfd_vms_slurp_etir function in bfd/vms-alpha.c in the Binary File ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21579
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=76800cba595efc3fe95a446c2d664e42ae4ee869
 CVE-2017-9744 (The sh_elf_set_mach_from_flags function in bfd/elf32-sh.c in the Binary ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21578
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=f461bbd847f15657f3dd2f317c30c75a7520da1f
 CVE-2017-9743 (The print_insn_score32 function in opcodes/score7-dis.c:552 in GNU ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21577
 CVE-2017-9742 (The score_opcodes function in opcodes/score7-dis.c in GNU Binutils 2.28 ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21576
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=e64519d1ed7fd8f990f05a5562d5b5c0c44b7d7e
@@ -10291,44 +10291,44 @@
 	NOT-FOR-US: Google I/O 2017 application
 CVE-2017-9044 (The print_symbol_for_build_attribute function in readelf.c in GNU ...)
 	- binutils 2.29-1 (low)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 CVE-2017-9043 (readelf.c in GNU Binutils 2017-04-12 has a "shift exponent too large ...)
 	- binutils 2.29-1 (low; bug #863674)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=ddef72cdc10d82ba011a7ff81cafbbd3466acf54
 CVE-2017-9042 (readelf.c in GNU Binutils 2017-04-12 has a "cannot be represented in ...)
 	- binutils 2.29-1 (low; bug #863674)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=7296a62a2a237f6b1ad8db8c38b090e9f592c8cf
 CVE-2017-9041 (GNU Binutils 2.28 allows remote attackers to cause a denial of service ...)
 	- binutils 2.28-6 (low; bug #863674)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=75ec1fdbb797a389e4fe4aaf2e15358a070dcc19
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=c4ab9505b53cdc899506ed421fddb7e1f8faf7a3
 CVE-2017-9040 (GNU Binutils 2017-04-03 allows remote attackers to cause a denial of ...)
 	- binutils 2.29-1 (low; bug #863674)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=7296a62a2a237f6b1ad8db8c38b090e9f592c8cf
 CVE-2017-9039 (GNU Binutils 2.28 allows remote attackers to cause a denial of service ...)
 	- binutils 2.28-6 (low; bug #863674)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=82156ab704b08b124d319c0decdbd48b3ca2dac5
 CVE-2017-9038 (GNU Binutils 2.28 allows remote attackers to cause a denial of service ...)
 	- binutils 2.28-6 (low; bug #863674)
-	[stretch] - binutils <no-dsa> (Minor issue)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=f32ba72991d2406b21ab17edc234a2f3fa7fb23d
 CVE-2017-9037 (Multiple cross-site scripting (XSS) vulnerabilities in Trend Micro ...)
@@ -11808,7 +11808,7 @@
 	NOTE: https://www.kde.org/info/security/advisory-20170510-1.txt
 CVE-2017-8421 (The function coff_set_alignment_hook in coffcode.h in Binary File ...)
 	- binutils 2.28-5
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21440
 	NOTE: Fixed by: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=39ff1b79f687b65f4144ddb379f22587003443fb
@@ -11920,37 +11920,37 @@
 	NOTE: https://vcs.pcre.org/pcre2?view=revision&revision=674
 CVE-2017-8398 (dwarf.c in GNU Binutils 2.28 is vulnerable to an invalid read of size 1 ...)
 	- binutils 2.28-5
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21438
 	NOTE: Fixed by: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=d949ff5607b9f595e0eed2ff15fbe5eb84eb3a34
 CVE-2017-8397 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.28-5
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21434
 	NOTE: Fixed by: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=04b31182bf3f8a1a76e995bdfaaaab4c009b9cb2
 CVE-2017-8396 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.28-5
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21432
 	NOTE: Fixed by: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=a941291cab71b9ac356e1c03968c177c03e602ab
 CVE-2017-8395 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.28-5
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21431
 	NOTE: Fixed by: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=e63d123268f23a4cbc45ee55fb6dbc7d84729da3
 CVE-2017-8394 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.28-5
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21414
 	NOTE: Fixed by: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=7eacd66b086cabb1daab20890d5481894d4f56b2
 CVE-2017-8393 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.28-5
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21412
 	NOTE: Fixed by: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=bce964aa6c777d236fbd641f2bc7bb931cfe4bf3
@@ -14400,7 +14400,7 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2017/04/16/2
 CVE-2017-7614 (elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as ...)
 	- binutils 2.28-4 (low; bug #859989)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://blogs.gentoo.org/ago/2017/04/05/binutils-two-null-pointer-dereference-in-elflink-c/
 	NOTE: Fixed by: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=ad32986fdf9da1c8748e47b8b45100398223dba8
@@ -15533,32 +15533,32 @@
 	NOT-FOR-US: Riverbed RiOS
 CVE-2017-7304 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.27.51.20161212-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <not-affected> (vulnerable code not present)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20931
 CVE-2017-7303 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.27.51.20161212-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <not-affected> (vulnerable code not present)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20922
 CVE-2017-7302 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.27.51.20161212-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20921
 CVE-2017-7301 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.27.51.20161212-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20924
 CVE-2017-7300 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.27.51.20161212-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20909
 CVE-2017-7299 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
 	- binutils 2.27.51.20161220-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20908
 CVE-2016-10309 (In the GUI of Ceragon FibeAir IP-10 (before 7.2.0) devices, a remote ...)
@@ -16019,31 +16019,31 @@
 	NOTE: https://xenbits.xen.org/xsa/advisory-212.html
 CVE-2017-7227 (GNU linker (ld) in GNU Binutils 2.28 is vulnerable to a heap-based ...)
 	- binutils 2.27.51.20161212-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20906
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=406bd128dba2a59d0736839fc87a59bce319076c
 CVE-2017-7226 (The pe_ILF_object_p function in the Binary File Descriptor (BFD) ...)
 	- binutils 2.27.51.20161212-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20905
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=fa6631b4eecfcca00c13b9594e6336dffd40982f
 CVE-2017-7225 (The find_nearest_line function in addr2line in GNU Binutils 2.28 does ...)
 	- binutils 2.27.51.20161201-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20891
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=50455f1ab2935f7321215dfa681745c9b1cb5b19
 CVE-2017-7224 (The find_nearest_line function in objdump in GNU Binutils 2.28 is ...)
 	- binutils 2.27.51.20161201-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20892
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=e82ab856bb4689330c29fb9f1c57a8555b26380e
 CVE-2017-7223 (GNU assembler in GNU Binutils 2.28 is vulnerable to a global buffer ...)
 	- binutils 2.27.51.20161212-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=20898
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=69ace2200106348a1b00d509a6a234337c104c17
@@ -16091,7 +16091,7 @@
 	RESERVED
 CVE-2017-7210 (objdump in GNU Binutils 2.28 is vulnerable to multiple heap-based ...)
 	- binutils 2.28-3 (low; bug #858324)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21157
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=a2dea0b20bc66a4c287c3c50002b8c3b3e9d953a
@@ -16660,7 +16660,7 @@
 	NOT-FOR-US: GMV Checker ATM Security
 CVE-2017-6969 (readelf in GNU Binutils 2.28 is vulnerable to a heap-based buffer ...)
 	- binutils 2.28-3 (bug #858256)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21156
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=b814a36d3440de95f2ac6eaa4fc7935c322ea456
@@ -16678,13 +16678,13 @@
 	NOTE: https://github.com/neutrinolabs/xrdp/pull/696/commits/44129acd210c803fc8bbcfaf1b0db05e5bb4034f
 CVE-2017-6966 (readelf in GNU Binutils 2.28 has a use-after-free (specifically ...)
 	- binutils 2.28-3 (bug #858263)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21139
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=f84ce13b6708801ca1d6289b7c4003e2f5a6d7f9
 CVE-2017-6965 (readelf in GNU Binutils 2.28 writes to illegal addresses while ...)
 	- binutils 2.28-3 (bug #858264)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=21137
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=03f7786e2f440b9892b1c34a58fb26222ce1b493
@@ -47532,7 +47532,7 @@
 	[jessie] - ht <no-dsa> (Minor issue)
 	[wheezy] - ht <no-dsa> (Minor issue)
 	- binutils 2.27.51.20161102-1 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	NOTE: https://gcc.gnu.org/bugzilla/show_bug.cgi?id=71696
 	NOTE: https://gcc.gnu.org/viewcvs/gcc?view=revision&revision=239143
 CVE-2016-6130 (Race condition in the sclp_ctl_ioctl_sccb function in ...)
@@ -52538,7 +52538,7 @@
 	[jessie] - ht <no-dsa> (Minor issue)
 	[wheezy] - ht <no-dsa> (Minor issue)
 	- binutils 2.27.51.20161102-1 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	- libiberty 20161011-1 (low; bug #840360)
 	[jessie] - libiberty <no-dsa> (Minor issue)
 	[wheezy] - libiberty <no-dsa> (Minor issue)
@@ -52550,7 +52550,7 @@
 	[jessie] - ht <no-dsa> (Minor issue)
 	[wheezy] - ht <no-dsa> (Minor issue)
 	- binutils 2.27.51.20161102-1 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	- libiberty 20161011-1 (low; bug #840360)
 	[jessie] - libiberty <no-dsa> (Minor issue)
 	[wheezy] - libiberty <no-dsa> (Minor issue)
@@ -52558,7 +52558,7 @@
 	NOTE: https://gcc.gnu.org/viewcvs/gcc?view=revision&revision=238313
 CVE-2016-4491 (The d_print_comp function in cp-demangle.c in libiberty allows remote ...)
 	- binutils 2.28-3 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	[wheezy] - binutils <no-dsa> (Minor issue)
 	- libiberty 20170627-1 (low)
 	[stretch] - libiberty <no-dsa> (Minor issue)
@@ -52573,7 +52573,7 @@
 	[jessie] - ht <no-dsa> (Minor issue)
 	[wheezy] - ht <no-dsa> (Minor issue)
 	- binutils 2.27.51.20161102-1 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	- libiberty 20161011-1 (low; bug #840360)
 	[jessie] - libiberty <no-dsa> (Minor issue)
 	[wheezy] - libiberty <no-dsa> (Minor issue)
@@ -52585,7 +52585,7 @@
 	[jessie] - ht <no-dsa> (Minor issue)
 	[wheezy] - ht <no-dsa> (Minor issue)
 	- binutils 2.27.51.20161102-1 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	- libiberty 20161011-1 (low; bug #840360)
 	[jessie] - libiberty <no-dsa> (Minor issue)
 	[wheezy] - libiberty <no-dsa> (Minor issue)
@@ -52597,7 +52597,7 @@
 	[jessie] - ht <no-dsa> (Minor issue)
 	[wheezy] - ht <no-dsa> (Minor issue)
 	- binutils 2.27.51.20161102-1 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	- libiberty 20161011-1 (low; bug #840360)
 	[jessie] - libiberty <no-dsa> (Minor issue)
 	[wheezy] - libiberty <no-dsa> (Minor issue)
@@ -52609,7 +52609,7 @@
 	[jessie] - ht <no-dsa> (Minor issue)
 	[wheezy] - ht <no-dsa> (Minor issue)
 	- binutils 2.27.51.20161102-1 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	- libiberty 20161011-1 (low; bug #840360)
 	[jessie] - libiberty <no-dsa> (Minor issue)
 	[wheezy] - libiberty <no-dsa> (Minor issue)
@@ -59410,7 +59410,7 @@
 	[jessie] - ht <no-dsa> (Minor issue)
 	[wheezy] - ht <no-dsa> (Minor issue)
 	- binutils 2.27.51.20161102-1 (low)
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	- libiberty 20161011-1 (low; bug #840360)
 	[jessie] - libiberty <no-dsa> (Minor issue)
 	[wheezy] - libiberty <no-dsa> (Minor issue)
@@ -74916,7 +74916,7 @@
 CVE-2014-9939 (ihex.c in GNU Binutils before 2.26 contains a stack buffer overflow ...)
 	{DLA-552-1 DLA-324-1}
 	- binutils 2.25.90.20151125-1
-	[jessie] - binutils <no-dsa> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
 	- gdb 7.10-1 (unimportant)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/07/31/6
 	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=18750




More information about the Secure-testing-commits mailing list