[Secure-testing-commits] r49131 - data/CVE
Moritz Muehlenhoff
jmm at moszumanska.debian.org
Wed Feb 22 17:59:30 UTC 2017
Author: jmm
Date: 2017-02-22 17:59:30 +0000 (Wed, 22 Feb 2017)
New Revision: 49131
Modified:
data/CVE/list
Log:
NFUs
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-02-22 17:56:08 UTC (rev 49130)
+++ data/CVE/list 2017-02-22 17:59:30 UTC (rev 49131)
@@ -31739,9 +31739,9 @@
CVE-2016-4782 (Lenovo SHAREit before 3.5.98_ww on Android before 4.2 allows remote ...)
NOT-FOR-US: Lenovo
CVE-2016-4781 (An issue was discovered in certain Apple products. iOS before 10.2 is ...)
- TODO: check
+ NOT-FOR-US: Apple
CVE-2016-4780 (An issue was discovered in certain Apple products. macOS before ...)
- TODO: check
+ NOT-FOR-US: Apple
CVE-2016-4779 (Apple Type Services (ATS) in Apple OS X before 10.12 allows remote ...)
NOT-FOR-US: Apple
CVE-2016-4778 (The kernel in Apple iOS before 10, OS X before 10.12, tvOS before 10, ...)
@@ -31773,7 +31773,7 @@
CVE-2016-4765 (WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on ...)
NOT-FOR-US: Webkit as used by Apple
CVE-2016-4764 (An issue was discovered in certain Apple products. iOS before 10 is ...)
- TODO: check
+ NOT-FOR-US: Apple
CVE-2016-4763 (WKWebView in WebKit in Apple iOS before 10, iTunes before 12.5.1 on ...)
NOT-FOR-US: Webkit as used by Apple
CVE-2016-4762 (WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, iCloud ...)
@@ -31863,7 +31863,7 @@
CVE-2016-4722 (The IDS - Connectivity component in Apple iOS before 10 and OS X ...)
NOT-FOR-US: Apple
CVE-2016-4721 (An issue was discovered in certain Apple products. iOS before 10.1 is ...)
- TODO: check
+ NOT-FOR-US: Apple
CVE-2016-4720
RESERVED
CVE-2016-4719 (The GeoServices component in Apple iOS before 10 and watchOS before 3 ...)
@@ -33076,7 +33076,7 @@
CVE-2016-4328 (MEDHOST Perioperative Information Management System (aka PIMS or ...)
NOT-FOR-US: MEDHOST Perioperative Information Management System
CVE-2016-4327 (Cross-site scripting (XSS) vulnerability in WSO2 SOA Enablement Server ...)
- TODO: check
+ NOT-FOR-US: WSO2 SOA Enablement Server
CVE-2016-4326 (The Chef Manage (formerly opscode-manage) add-on before 1.12.0 for ...)
TODO: check
CVE-2016-4325 (Lantronix xPrintServer devices with firmware before 5.0.1-65 have ...)
@@ -33104,19 +33104,19 @@
CVE-2016-4317
RESERVED
CVE-2016-4316 (Multiple cross-site scripting (XSS) vulnerabilities in WSO2 Carbon ...)
- TODO: check
+ NOT-FOR-US: WSO2 Carbon
CVE-2016-4315 (Cross-site request forgery (CSRF) vulnerability in WSO2 Carbon 4.4.5 ...)
- TODO: check
+ NOT-FOR-US: WSO2 Carbon
CVE-2016-4314 (Directory traversal vulnerability in the LogViewer Admin Service in ...)
- TODO: check
+ NOT-FOR-US: WSO2 Carbon
CVE-2016-4313
RESERVED
{DLA-596-1}
- extplorer <removed>
CVE-2016-4312 (XML external entity (XXE) vulnerability in the XACML flow feature in ...)
- TODO: check
+ NOT-FOR-US: WSO2 Identity Server
CVE-2016-4311 (Cross-site request forgery (CSRF) vulnerability in the XACML flow ...)
- TODO: check
+ NOT-FOR-US: WSO2 Identity Server
CVE-2016-4310
RESERVED
CVE-2016-4309 (Session fixation vulnerability in Symphony CMS 2.6.7, when ...)
@@ -34192,7 +34192,7 @@
- cronic 3-1 (bug #820331)
NOTE: http://www.openwall.com/lists/oss-security/2016/04/09/4
CVE-2016-3962 (Stack-based buffer overflow in the NTP time-server interface on ...)
- TODO: check
+ NOT-FOR-US: Meinberg
CVE-2016-3961 (Xen and the Linux kernel through 4.5.x do not properly suppress ...)
{DSA-3607-1 DLA-516-1}
- linux 4.5.2-1
@@ -34288,7 +34288,7 @@
CVE-2016-3942
RESERVED
CVE-2016-3940 (The Synaptics touchscreen driver in Android before 2016-10-05 on Nexus ...)
- TODO: check
+ NOT-FOR-US: Synaptics driver for Android
CVE-2016-3939 (drivers/video/msm/mdss/mdss_debug.c in the Qualcomm video driver in ...)
NOT-FOR-US: Qualcomm driver for Android
CVE-2016-3938 (drivers/video/msm/mdss/mdss_mdp_overlay.c in the Qualcomm video driver ...)
More information about the Secure-testing-commits
mailing list