[Secure-testing-commits] r50183 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Mar 29 21:22:49 UTC 2017


Author: jmm
Date: 2017-03-29 21:22:49 +0000 (Wed, 29 Mar 2017)
New Revision: 50183

Modified:
   data/CVE/list
Log:
CVE-2017-7184 confirmed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-29 21:21:51 UTC (rev 50182)
+++ data/CVE/list	2017-03-29 21:22:49 UTC (rev 50183)
@@ -562,7 +562,9 @@
 	[wheezy] - erlang <not-affected> (Vulnerable code not present)
 	NOTE: https://github.com/erlang/otp/pull/1108
 CVE-2017-7184 (The linux-image-* package 4.8.0.41.52 for the Linux kernel on Ubuntu ...)
-	- linux <undetermined>
+	- linux <unfixed> (low)
+	NOTE: Unprivileged user namespaces are disabled in Debian, this only affects
+	NOTE: non-standard setups
 CVE-2017-7186 (libpcre1 in PCRE 8.40 and libpcre2 in PCRE2 10.23 allow remote ...)
 	- pcre3 2:8.39-3 (bug #858230)
 	[jessie] - pcre3 <no-dsa> (Minor issue; 32bit character support not enabled)




More information about the Secure-testing-commits mailing list