[Secure-testing-commits] r52297 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Sun Jun 4 21:10:16 UTC 2017


Author: sectracker
Date: 2017-06-04 21:10:16 +0000 (Sun, 04 Jun 2017)
New Revision: 52297

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-04 18:40:15 UTC (rev 52296)
+++ data/CVE/list	2017-06-04 21:10:16 UTC (rev 52297)
@@ -1,3 +1,11 @@
+CVE-2017-9430
+	RESERVED
+CVE-2017-9429
+	RESERVED
+CVE-2017-9428 (A directory traversal vulnerability exists in ...)
+	TODO: check
+CVE-2017-9427 (SQL injection vulnerability in BigTree CMS through 4.2.18 allows remote ...)
+	TODO: check
 CVE-2017-9426
 	RESERVED
 CVE-2017-9425
@@ -78007,7 +78015,7 @@
 	- unrar-nonfree 1:5.2.7-0.1 (bug #774171)
 	[wheezy] - unrar-nonfree 1:4.1.4-1+deb7u1
 	[squeeze] - unrar-nonfree <no-dsa> (Non-free not supported)
-CVE-2014-9983 [symlink directory traversal]
+CVE-2014-9983 (Directory Traversal exists in RAR 4.x and 5.x because an unpack ...)
 	- rar <unfixed> (bug #774172)
 	[stretch] - rar <no-dsa> (Non-free not supported)
 	[jessie] - rar <no-dsa> (Non-free not supported)




More information about the Secure-testing-commits mailing list