[Secure-testing-commits] r49085 - in data: CVE DSA

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Feb 20 21:35:35 UTC 2017


Author: jmm
Date: 2017-02-20 21:35:35 +0000 (Mon, 20 Feb 2017)
New Revision: 49085

Modified:
   data/CVE/list
   data/DSA/list
Log:
another chromium issue fixed
qemu n/a in stable/oldstable


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-02-20 21:32:21 UTC (rev 49084)
+++ data/CVE/list	2017-02-20 21:35:35 UTC (rev 49085)
@@ -99,10 +99,10 @@
 CVE-2017-6058 [net: vmxnet3: OOB NetRxPkt::ehdr_buf access when doing vlan stripping]
 	RESERVED
 	- qemu <unfixed> (bug #855616)
-	- qemu-kvm <removed>
+	[jessie] - qemu <not-affected> (Vulnerable code not present)
+	- qemu-kvm <not-affected> (Vulnerable code not present)
 	NOTE: https://lists.nongnu.org/archive/html/qemu-devel/2017-02/msg03527.html
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1423358
-	TODO: check affected versions
 CVE-2017-6057
 	RESERVED
 CVE-2017-6055 (XML external entity (XXE) vulnerability in eParakstitajs 3 before 1.3.9 ...)
@@ -266,7 +266,7 @@
 	NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=697500
 	NOTE: http://git.ghostscript.com/?p=mupdf.git;h=1912de5f08e90af1d9d0a9791f58ba3afdb9d465
 CVE-2017-5990 (An issue was discovered in PhreeBooksERP before 2017-02-13. The ...)
-	TODO: check
+	NOT-FOR-US: PhreeBooksERP
 CVE-2017-5989
 	RESERVED
 CVE-2017-5988
@@ -3394,7 +3394,9 @@
 CVE-2017-5028
 	RESERVED
 CVE-2017-5027 (Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and ...)
-	TODO: check
+	{DSA-3776-1}
+	- chromium-browser 56.0.2924.76-3
+	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5026 (Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed ...)
 	{DSA-3776-1}
 	- chromium-browser 56.0.2924.76-3

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2017-02-20 21:32:21 UTC (rev 49084)
+++ data/DSA/list	2017-02-20 21:35:35 UTC (rev 49085)
@@ -41,7 +41,7 @@
 	{CVE-2016-6906 CVE-2016-6912 CVE-2016-9317 CVE-2016-10166 CVE-2016-10167 CVE-2016-10168}
 	[jessie] - libgd2 2.1.0-5+deb8u9
 [31 Jan 2017] DSA-3776-1 chromium-browser - security update
-	{CVE-2017-5006 CVE-2017-5007 CVE-2017-5008 CVE-2017-5009 CVE-2017-5010 CVE-2017-5011 CVE-2017-5012 CVE-2017-5013 CVE-2017-5014 CVE-2017-5015 CVE-2017-5016 CVE-2017-5017 CVE-2017-5018 CVE-2017-5019 CVE-2017-5020 CVE-2017-5021 CVE-2017-5022 CVE-2017-5023 CVE-2017-5024 CVE-2017-5025 CVE-2017-5026}
+	{CVE-2017-5006 CVE-2017-5007 CVE-2017-5008 CVE-2017-5009 CVE-2017-5010 CVE-2017-5011 CVE-2017-5012 CVE-2017-5013 CVE-2017-5014 CVE-2017-5015 CVE-2017-5016 CVE-2017-5017 CVE-2017-5018 CVE-2017-5019 CVE-2017-5020 CVE-2017-5021 CVE-2017-5022 CVE-2017-5023 CVE-2017-5024 CVE-2017-5025 CVE-2017-5026 CVE-2017-5027}
 	[jessie] - chromium-browser 56.0.2924.76-1~deb8u1
 [29 Jan 2017] DSA-3775-1 tcpdump - security update
 	{CVE-2016-7922 CVE-2016-7923 CVE-2016-7924 CVE-2016-7925 CVE-2016-7926 CVE-2016-7927 CVE-2016-7928 CVE-2016-7929 CVE-2016-7930 CVE-2016-7931 CVE-2016-7932 CVE-2016-7933 CVE-2016-7934 CVE-2016-7935 CVE-2016-7936 CVE-2016-7937 CVE-2016-7938 CVE-2016-7939 CVE-2016-7940 CVE-2016-7973 CVE-2016-7974 CVE-2016-7975 CVE-2016-7983 CVE-2016-7984 CVE-2016-7985 CVE-2016-7986 CVE-2016-7992 CVE-2016-7993 CVE-2016-8574 CVE-2016-8575 CVE-2017-5202 CVE-2017-5203 CVE-2017-5204 CVE-2017-5205 CVE-2017-5341 CVE-2017-5342 CVE-2017-5482 CVE-2017-5483 CVE-2017-5484 CVE-2017-5485 CVE-2017-5486}




More information about the Secure-testing-commits mailing list