[Secure-testing-commits] r55274 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Aug 30 21:31:24 UTC 2017


Author: jmm
Date: 2017-08-30 21:31:23 +0000 (Wed, 30 Aug 2017)
New Revision: 55274

Modified:
   data/CVE/list
Log:
new binutils issue
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-30 21:22:55 UTC (rev 55273)
+++ data/CVE/list	2017-08-30 21:31:23 UTC (rev 55274)
@@ -569,9 +569,9 @@
 	NOTE: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=commit;h=b87ffbd12bddf64582c0a6e082b462744474de94
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2017-40.html
 CVE-2017-13763 (ONOS versions 1.8.0, 1.9.0, and 1.10.0 do not restrict the amount of ...)
-	TODO: check
+	NOT-FOR-US: ONOS
 CVE-2017-13762 (ONOS versions 1.8.0, 1.9.0, and 1.10.0 are vulnerable to XSS. ...)
-	TODO: check
+	NOT-FOR-US: ONOS
 CVE-2017-13761
 	RESERVED
 CVE-2017-13760 (In The Sleuth Kit (TSK) 4.4.2, fls hangs on a corrupt exfat image in ...)
@@ -583,7 +583,11 @@
 	- imagemagick <unfixed>
 	NOTE: https://www.imagemagick.org/discourse-server/viewtopic.php?f=3&t=32583
 CVE-2017-13757 (The Binary File Descriptor (BFD) library (aka libbfd), as distributed ...)
-	TODO: check
+	- binutils <unfixed>
+	[stretch] - binutils <ignored> (Minor issue)
+	[jessie] - binutils <ignored> (Minor issue)
+	NOTE: https://sourceware.org/bugzilla/show_bug.cgi?id=22018
+	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=90efb6422939ca031804266fba669f77c22a274a
 CVE-2017-13756 (In The Sleuth Kit (TSK) 4.4.2, opening a crafted disk image triggers ...)
 	- sleuthkit <unfixed> (bug #873725)
 	NOTE: https://github.com/sleuthkit/sleuthkit/issues/914




More information about the Secure-testing-commits mailing list