[Secure-testing-commits] r53939 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Wed Jul 26 09:10:15 UTC 2017


Author: sectracker
Date: 2017-07-26 09:10:15 +0000 (Wed, 26 Jul 2017)
New Revision: 53939

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-26 07:01:07 UTC (rev 53938)
+++ data/CVE/list	2017-07-26 09:10:15 UTC (rev 53939)
@@ -1,3 +1,95 @@
+CVE-2017-11664
+	RESERVED
+CVE-2017-11663
+	RESERVED
+CVE-2017-11662
+	RESERVED
+CVE-2017-11661
+	RESERVED
+CVE-2017-11660
+	RESERVED
+CVE-2017-11659
+	RESERVED
+CVE-2017-11658
+	RESERVED
+CVE-2017-11657
+	RESERVED
+CVE-2017-11656
+	RESERVED
+CVE-2017-11655
+	RESERVED
+CVE-2017-11654
+	RESERVED
+CVE-2017-11653
+	RESERVED
+CVE-2017-11652
+	RESERVED
+CVE-2017-11651 (NexusPHP V1.5 has XSS via a javascript: or data: URL in a UBBCode url ...)
+	TODO: check
+CVE-2017-11650
+	RESERVED
+CVE-2017-11649
+	RESERVED
+CVE-2017-11648
+	RESERVED
+CVE-2017-11647
+	RESERVED
+CVE-2017-11646
+	RESERVED
+CVE-2017-11645
+	RESERVED
+CVE-2017-11644 (When ImageMagick 7.0.6-1 processes a crafted file in convert, it can ...)
+	TODO: check
+CVE-2017-11643 (GraphicsMagick 1.3.26 has a heap overflow in the WriteCMYKImage() ...)
+	TODO: check
+CVE-2017-11642 (GraphicsMagick 1.3.26 has a NULL pointer dereference in the ...)
+	TODO: check
+CVE-2017-11641 (GraphicsMagick 1.3.26 has a Memory Leak in the PersistCache function in ...)
+	TODO: check
+CVE-2017-11640 (When ImageMagick 7.0.6-1 processes a crafted file in convert, it can ...)
+	TODO: check
+CVE-2017-11639 (When ImageMagick 7.0.6-1 processes a crafted file in convert, it can ...)
+	TODO: check
+CVE-2017-11638 (GraphicsMagick 1.3.26 has a segmentation violation in the ...)
+	TODO: check
+CVE-2017-11637 (GraphicsMagick 1.3.26 has a NULL pointer dereference in the ...)
+	TODO: check
+CVE-2017-11636 (GraphicsMagick 1.3.26 has a heap overflow in the WriteRGBImage() ...)
+	TODO: check
+CVE-2017-11635
+	RESERVED
+CVE-2017-11634
+	RESERVED
+CVE-2017-11633
+	RESERVED
+CVE-2017-11632
+	RESERVED
+CVE-2017-11631 (dapur/app/app_user/controller/status.php in Fiyo CMS 2.0.7 has SQL ...)
+	TODO: check
+CVE-2017-11630 (dapur\apps\app_config\controller\backuper.php in Fiyo CMS 2.0.7 allows ...)
+	TODO: check
+CVE-2017-11629 (dayrui FineCms through 5.0.10 has Cross Site Scripting (XSS) in ...)
+	TODO: check
+CVE-2017-11628 (In PHP before 5.6.31, 7.x before 7.0.21, and 7.1.x before 7.1.7, a ...)
+	TODO: check
+CVE-2017-11627 (A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, ...)
+	TODO: check
+CVE-2017-11626 (A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, ...)
+	TODO: check
+CVE-2017-11625 (A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, ...)
+	TODO: check
+CVE-2017-11624 (A stack-consumption vulnerability was found in libqpdf in QPDF 6.0.0, ...)
+	TODO: check
+CVE-2017-11623
+	RESERVED
+CVE-2017-11622
+	RESERVED
+CVE-2017-11621
+	RESERVED
+CVE-2017-11620
+	RESERVED
+CVE-2017-11619
+	RESERVED
 CVE-2017-XXXX [out-of-bounds read in eexec_line()]
 	- t1utils 1.40-1 (bug #868134; unimportant)
 	[jessie] - t1utils <not-affected> (Vulnerable code introduced in 1.39)
@@ -33,8 +125,8 @@
 	RESERVED
 CVE-2017-11614 (MEDHOST Connex contains hard-coded credentials that are used for ...)
 	NOT-FOR-US: MEDHOST Connex
-CVE-2017-11613
-	RESERVED
+CVE-2017-11613 (In LibTIFF 4.0.8, there is a denial of service vulnerability in the ...)
+	TODO: check
 CVE-2017-11612
 	RESERVED
 CVE-2016-10401 (ZyXEL PK5001Z devices have zyad5001 as the su password, which makes it ...)
@@ -16065,8 +16157,8 @@
 	RESERVED
 CVE-2017-6006
 	REJECTED
-CVE-2017-6005
-	RESERVED
+CVE-2017-6005 (Waves MaxxAudio, as installed on Dell laptops, adds a "WavesSysSvc" ...)
+	TODO: check
 CVE-2017-6004 (The compile_bracket_matchingpath function in pcre_jit_compile.c in PCRE ...)
 	- pcre3 2:8.39-2.1 (bug #855405)
 	[jessie] - pcre3 <not-affected> (Vulnerable code introduced later)




More information about the Secure-testing-commits mailing list