[Secure-testing-commits] r55099 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Aug 26 07:03:10 UTC 2017


Author: carnil
Date: 2017-08-26 07:03:10 +0000 (Sat, 26 Aug 2017)
New Revision: 55099

Modified:
   data/CVE/list
Log:
Mark CVE-2015-3257 as NFU

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-26 06:44:57 UTC (rev 55098)
+++ data/CVE/list	2017-08-26 07:03:10 UTC (rev 55099)
@@ -84601,7 +84601,8 @@
 	NOTE: cups moved filters to separate package in 1.5.0-16
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1235385
 CVE-2015-3257 (Zend/Diactoros/Uri::filterPath in zend-diactoros before 1.0.4 does not ...)
-	TODO: check
+	NOT-FOR-US: zend-diactoros
+	NOTE: https://framework.zend.com/security/advisory/ZF2015-05
 CVE-2015-3256 (PolicyKit (aka polkit) before 0.113 allows local users to cause a ...)
 	- policykit-1 <not-affected> (The Policykit versions which rely on Javascript/Spidermonkey haven't been uploaded to unstable)
 	NOTE: https://bugs.freedesktop.org/show_bug.cgi?id=69501




More information about the Secure-testing-commits mailing list