[Secure-testing-commits] r48046 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sat Jan 14 15:45:10 UTC 2017


Author: jmm
Date: 2017-01-14 15:45:10 +0000 (Sat, 14 Jan 2017)
New Revision: 48046

Modified:
   data/CVE/list
Log:
tripleo-heat-templates bug
further <undetermined> triage


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-14 15:43:59 UTC (rev 48045)
+++ data/CVE/list	2017-01-14 15:45:10 UTC (rev 48046)
@@ -53053,7 +53053,7 @@
 	NOTE: https://www.samba.org/samba/security/CVE-2015-5330.html
 	NOTE: Samba update needs as well fixed ldb
 CVE-2015-5329 (The TripleO Heat templates (tripleo-heat-templates), as used in Red ...)
-	- tripleo-heat-templates <unfixed>
+	- tripleo-heat-templates <unfixed> (bug #851396)
 CVE-2015-5328
 	RESERVED
 CVE-2015-5327 [User triggerable out-of-bounds read]
@@ -53178,7 +53178,7 @@
 CVE-2015-5304 (Red Hat JBoss Enterprise Application Platform (EAP) before 6.4.5 does ...)
 	NOT-FOR-US: Red Hat JBoss Enterprise Application Platform
 CVE-2015-5303 (The TripleO Heat templates (tripleo-heat-templates), when deployed via ...)
-	- tripleo-heat-templates <unfixed>
+	- tripleo-heat-templates <unfixed> (bug #851396)
 CVE-2015-5302 (libreport 2.0.7 before 2.6.3 only saves changes to the first file when ...)
 	NOT-FOR-US: abrt/libreport
 CVE-2015-5301 (providers/saml2/admin.py in the Identity Provider (IdP) server in ...)
@@ -65224,7 +65224,7 @@
 	NOT-FOR-US: typo3 extension
 CVE-2015-1554 [can be crashed by some network traffic]
 	RESERVED
-	- kgb-bot <undetermined> (bug #776424)
+	- kgb-bot <unfixed> (bug #776424)
 CVE-2015-1369 (SQL injection vulnerability in Sequelize before 2.0.0-rc7 for Node.js ...)
 	NOT-FOR-US: sequelize
 CVE-2015-1354
@@ -223303,8 +223303,7 @@
 CVE-2006-0198 (Cross-site scripting (XSS) vulnerability in a certain module, possibly ...)
 	NOT-FOR-US: XOOPS
 CVE-2006-0197 (The XClientMessageEvent struct used in certain components of X.Org ...)
-	- libx11 <undetermined> (bug #349251)
-	NOTE: Doesn't look like a security problem, see bug report
+	NOTE: Historic X11 bug #349251
 CVE-2006-0196 (Unspecified vulnerability in Serial line sniffer (aka slsnif) 0.4.4 ...)
 	NOT-FOR-US: slsnif
 CVE-2006-0195 (Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 ...)




More information about the Secure-testing-commits mailing list