[Secure-testing-commits] r58285 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Dec 6 06:40:17 UTC 2017


Author: carnil
Date: 2017-12-06 06:40:17 +0000 (Wed, 06 Dec 2017)
New Revision: 58285

Modified:
   data/CVE/list
Log:
Add CVE-2017-12169/freeipa

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-06 06:37:17 UTC (rev 58284)
+++ data/CVE/list	2017-12-06 06:40:17 UTC (rev 58285)
@@ -17514,8 +17514,11 @@
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1493056
 CVE-2017-12170 (Downstream version 1.0.46-1 of pure-ftpd as shipped in Fedora was ...)
 	- pure-ftpd <not-affected> (Fedora specific packaging error)
-CVE-2017-12169
+CVE-2017-12169 [Password hash disclosure via 'System: Read Stage Users' permission]
 	RESERVED
+	- freeipa <undetermined>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1487697
+	TODO: check, disputed as well if valid CVE assignment
 CVE-2017-12168 (The access_pmu_evcntr function in arch/arm64/kvm/sys_regs.c in the ...)
 	- linux 4.8.11-1
 	[jessie] - linux <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list