[Secure-testing-commits] r53407 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Jul 12 10:19:56 UTC 2017


Author: jmm
Date: 2017-07-12 10:19:56 +0000 (Wed, 12 Jul 2017)
New Revision: 53407

Modified:
   data/CVE/list
Log:
new heimdal, nginx issues
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-12 09:20:25 UTC (rev 53406)
+++ data/CVE/list	2017-07-12 10:19:56 UTC (rev 53407)
@@ -3,15 +3,15 @@
 CVE-2017-11183
 	RESERVED
 CVE-2017-11182 (In Rise Ultimate Project Manager v1.8, XSS vulnerabilities were found ...)
-	TODO: check
+	NOT-FOR-US: Rise Ultimate Project Manager
 CVE-2017-11181 (In Rise Ultimate Project Manager v1.8, XSS vulnerabilities were found ...)
-	TODO: check
+	NOT-FOR-US: Rise Ultimate Project Manager
 CVE-2017-11180 (FineCMS through 2017-07-11 has stored XSS in the logging functionality, ...)
-	TODO: check
+	NOT-FOR-US: FineCMS
 CVE-2017-11179 (FineCMS through 2017-07-11 has stored XSS in route=admin when modifying ...)
-	TODO: check
+	NOT-FOR-US: FineCMS
 CVE-2017-11178 (In FineCMS through 2017-07-11, application/core/controller/style.php ...)
-	TODO: check
+	NOT-FOR-US: FineCMS
 CVE-2017-11177
 	RESERVED
 CVE-2017-11176 (The mq_notify function in the Linux kernel through 4.11.9 does not set ...)
@@ -382,6 +382,8 @@
 	NOT-FOR-US: kindeditor
 CVE-2017-11103
 	RESERVED
+	- heimdal <unfixed>
+	NOTE: https://orpheus-lyre.info/
 CVE-2017-11102 (The ReadOneJNGImage function in coders/png.c in GraphicsMagick 1.3.26 ...)
 	- graphicsmagick 1.3.26-2 (bug #867746)
 	NOTE: http://hg.code.sf.net/p/graphicsmagick/code/rev/d445af60a8d5
@@ -10041,6 +10043,8 @@
 	RESERVED
 CVE-2017-7529
 	RESERVED
+	- nginx <unfixed>
+	NOTE: http://mailman.nginx.org/pipermail/nginx-announce/2017/000200.html?_ga=2.161247166.2001608418.1499843104-742470278.1499843104
 CVE-2017-7528
 	RESERVED
 CVE-2017-7527




More information about the Secure-testing-commits mailing list