[Secure-testing-commits] r53603 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Jul 18 06:51:42 UTC 2017


Author: jmm
Date: 2017-07-18 06:51:42 +0000 (Tue, 18 Jul 2017)
New Revision: 53603

Modified:
   data/CVE/list
Log:
new shotwell issue
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-18 06:24:29 UTC (rev 53602)
+++ data/CVE/list	2017-07-18 06:51:42 UTC (rev 53603)
@@ -68,7 +68,7 @@
 CVE-2017-11368
 	RESERVED
 CVE-2017-11367 (The shoco_decompress function in the API in shoco through 2017-07-17 ...)
-	TODO: check
+	NOT-FOR-US: shoco
 CVE-2017-11366
 	RESERVED
 CVE-2017-11365
@@ -765,7 +765,7 @@
 	- tt-rss 17.1+git20170410+dfsg-1
 	NOTE: https://git.tt-rss.org/git/tt-rss/commit/829d478f1b054c8ce1eeb4f15170dc4a1abb3e47
 CVE-2017-1000034 (Akka versions <=2.4.16 and 2.5-M1 are vulnerable to a java ...)
-	TODO: check
+	NOT-FOR-US: Akka
 CVE-2017-1000033 (Wordpress Plugin Vospari Forms version < 1.4 is vulnerable to a ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2017-1000032 (Cross-Site scripting (XSS) vulnerabilities in Cacti 0.8.8b allow ...)
@@ -787,7 +787,7 @@
 CVE-2017-1000025 (GNOME Web (Epiphany) 3.23 before 3.23.5, 3.22 before 3.22.6, 3.20 ...)
 	TODO: check
 CVE-2017-1000024 (Shotwell version 0.24.4 or earlier and 0.25.3 or earlier is vulnerable ...)
-	TODO: check
+	- shotwell 0.25.4+really0.24.5-0.1 (unimportant)
 CVE-2017-1000023 (LogicalDoc CommunityEdition 7.5.3 and prior is vulnerable to an XSS ...)
 	NOT-FOR-US: LogicalDoc
 CVE-2017-1000022 (LogicalDoc CommunityEdition 7.5.3 and prior contain an Incorrect ...)




More information about the Secure-testing-commits mailing list