[Secure-testing-commits] r53419 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Jul 12 21:31:11 UTC 2017


Author: jmm
Date: 2017-07-12 21:31:11 +0000 (Wed, 12 Jul 2017)
New Revision: 53419

Modified:
   data/CVE/list
Log:
"new" gnome-session issue
NFU
fix openvswitch entry


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-12 21:24:00 UTC (rev 53418)
+++ data/CVE/list	2017-07-12 21:31:11 UTC (rev 53419)
@@ -80,7 +80,7 @@
 CVE-2017-1000084
 	NOT-FOR-US: Jenkins plugin
 CVE-2017-11171 (Bad reference counting in the context of accept_ice_connection() in ...)
-	TODO: check
+	- gnome-session 2.30.0-1
 CVE-2017-11170 (The ReadTGAImage function in coders\tga.c in ImageMagick 7.0.5-6 has a ...)
 	- imagemagick <unfixed> (low)
 	NOTE: https://github.com/ImageMagick/ImageMagick/issues/472
@@ -5226,7 +5226,7 @@
 	RESERVED
 CVE-2017-9214 (In Open vSwitch (OvS) 2.7.0, while parsing an ...)
 	- openvswitch <unfixed> (bug #863228)
-	[jessie] - openvswitch <no-dsa> (Minor issue)
+	[stretch] - openvswitch <no-dsa> (Minor issue)
 	[jessie] - openvswitch <not-affected> (Vulnerable code not present)
 	[wheezy] - openvswitch <not-affected> (Vulnerable code not present)
 	NOTE: https://mail.openvswitch.org/pipermail/ovs-dev/2017-May/332711.html
@@ -9626,6 +9626,7 @@
 	- apache2 2.4.25-4
 CVE-2017-7678 (In Apache Spark before 2.2.0, it is possible for an attacker to take ...)
 	TODO: check
+	NOT-FOR-US: Apache Spark
 CVE-2017-7677 (In environments that use external location for hive tables, Hive ...)
 	NOT-FOR-US: Apache Ranger
 CVE-2017-7676 (Policy resource matcher in Apache Ranger before 0.7.1 ignores ...)




More information about the Secure-testing-commits mailing list