[Secure-testing-commits] r58468 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Dec 11 19:44:45 UTC 2017


Author: carnil
Date: 2017-12-11 19:44:45 +0000 (Mon, 11 Dec 2017)
New Revision: 58468

Modified:
   data/CVE/list
Log:
Add bug reference for undetermined issues in jasperreports, #884131

Due to lack of information it is unclear if the issuesaffect our source
or the resulting binary packages. Keep track of those issues via this
bugreport.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-11 19:40:28 UTC (rev 58467)
+++ data/CVE/list	2017-12-11 19:44:45 UTC (rev 58468)
@@ -10227,7 +10227,7 @@
 CVE-2017-14942 (Intelbras WRN 150 devices allow remote attackers to read the ...)
 	NOT-FOR-US: Intelbras WRN 150 devices
 CVE-2017-14941 (Jaspersoft JasperReports 4.7 suffers from a saved credential disclosure ...)
-	- jasperreports <undetermined> (bug #880467)
+	- jasperreports <undetermined> (bug #880467; bug #884131)
 	NOTE: https://github.com/binary1985/VulnerabilityDisclosure/blob/master/JasperSoft%20JasperReports%20-%204.7%20-%20CVE-2017-14941
 CVE-2017-14940 (scan_unit_for_symbols in dwarf2.c in the Binary File Descriptor (BFD) ...)
 	- binutils <unfixed>
@@ -38962,10 +38962,10 @@
 CVE-2017-5534
 	RESERVED
 CVE-2017-5533 (A vulnerability in the server content cache of TIBCO JasperReports ...)
-	- jasperreports <undetermined>
+	- jasperreports <undetermined> (bug #884131)
 	NOTE: http://www.tibco.com/support/advisories/2017/11/tibco-security-advisory-november-15-2017-tibco-jasperreports-server-2017
 CVE-2017-5532 (A vulnerability in the report renderer component of TIBCO ...)
-	- jasperreports <undetermined>
+	- jasperreports <undetermined> (bug #884131)
 	NOTE: https://www.tibco.com/support/advisories/2017/11/tibco-security-advisory-november-15-2017-tibco-jasperreports-2017-5532
 CVE-2017-5531 (Deployments of TIBCO Managed File Transfer Command Center versions ...)
 	NOT-FOR-US: TIBCO




More information about the Secure-testing-commits mailing list