[Secure-testing-commits] r52363 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Jun 6 20:43:19 UTC 2017


Author: jmm
Date: 2017-06-06 20:43:19 +0000 (Tue, 06 Jun 2017)
New Revision: 52363

Modified:
   data/CVE/list
Log:
otrs bug filed
not convinced about the samba bug being a security issue, will
  likely be removed from the security tracker


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-06 20:35:33 UTC (rev 52362)
+++ data/CVE/list	2017-06-06 20:43:19 UTC (rev 52363)
@@ -2,13 +2,11 @@
 	- mercurial <unfixed> (bug #861243)
 	NOTE: https://www.mercurial-scm.org/wiki/WhatsNew#Mercurial_4.1.3_.282017-4-18.29
 	NOTE: https://www.mercurial-scm.org/repo/hg/rev/77eaf9539499
-CVE-2017-XXXX [infintite loop on bad-symlink resolution]
+CVE-2017-XXXX [infinite loop on bad-symlink resolution]
 	- samba 2:4.5.6+dfsg-1 (bug #864291)
 	NOTE: https://git.samba.org/?p=samba.git;a=commitdiff;h=10c3e3923022485c720f322ca4f0aca5d7501310
 	NOTE: https://bugzilla.samba.org/show_bug.cgi?id=12572
-	NOTE: It was classed as a non-security related bug upstream. This is
-	NOTE: clearly a DoS class vulnerability so it should be treated as a
-	NOTE: security problem.
+	NOTE: It was classed as a non-security related bug upstream.
 CVE-2017-9447
 	RESERVED
 CVE-2017-9446
@@ -363,7 +361,7 @@
 	NOTE: http://git.qemu.org/?p=qemu.git;a=commitdiff;h=26f670a244982335cc08943fb1ec099a2c81e42d
 CVE-2017-9324
 	RESERVED
-	- otrs2 <unfixed>
+	- otrs2 <unfixed> (bug #864319)
 	NOTE: https://www.otrs.com/security-advisory-2017-03-security-update-otrs-versions/
 	NOTE: The security advisory is not very specific about the problem.
 	NOTE: From the CHANGES.md file in 3.3.17 it is likely to be this problem




More information about the Secure-testing-commits mailing list