[Secure-testing-commits] r58638 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Dec 17 08:30:31 UTC 2017


Author: carnil
Date: 2017-12-17 08:30:31 +0000 (Sun, 17 Dec 2017)
New Revision: 58638

Modified:
   data/CVE/list
Log:
Process NFUs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-17 08:28:00 UTC (rev 58637)
+++ data/CVE/list	2017-12-17 08:30:31 UTC (rev 58638)
@@ -1,9 +1,9 @@
 CVE-2017-17715 (The saveFile method in MediaController.java in the Telegram Messenger ...)
-	TODO: check
+	NOT-FOR-US: Telegram Messenger for Android
 CVE-2017-17714 (Trape before 2017-11-05 has XSS via the /nr red parameter, the /nr vId ...)
-	TODO: check
+	NOT-FOR-US: Trape
 CVE-2017-17713 (Trape before 2017-11-05 has SQL injection via the /nr red parameter, ...)
-	TODO: check
+	NOT-FOR-US: Trape
 CVE-2017-17712 (The raw_sendmsg() function in net/ipv4/raw.c in the Linux kernel ...)
 	- linux <unfixed>
 	[jessie] - linux <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list