[Secure-testing-commits] r51593 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri May 12 21:45:29 UTC 2017


Author: jmm
Date: 2017-05-12 21:45:29 +0000 (Fri, 12 May 2017)
New Revision: 51593

Modified:
   data/CVE/list
Log:
Android NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-05-12 21:40:38 UTC (rev 51592)
+++ data/CVE/list	2017-05-12 21:45:29 UTC (rev 51593)
@@ -22377,7 +22377,7 @@
 CVE-2017-0636
 	RESERVED
 CVE-2017-0635 (A remote denial of service vulnerability in HevcUtils.cpp in ...)
-	TODO: check
+	NOT-FOR-US: libstagefright
 CVE-2017-0634 (An information disclosure vulnerability in the Synaptics touchscreen ...)
 	NOT-FOR-US: Synaptics driver for Android
 CVE-2017-0633 (An information disclosure vulnerability in the Broadcom Wi-Fi driver ...)
@@ -22442,39 +22442,39 @@
 CVE-2017-0604 (An elevation of privilege vulnerability in the kernel Qualcomm power ...)
 	NOT-FOR-US: Qualcomm driver for Android
 CVE-2017-0603 (A denial of service vulnerability in libstagefright in Mediaserver ...)
-	TODO: check
+	NOT-FOR-US: libstagefright
 CVE-2017-0602 (An information disclosure vulnerability in Bluetooth could allow a ...)
 	NOT-FOR-US: Android
 CVE-2017-0601 (An Elevation of Privilege vulnerability in Bluetooth could potentially ...)
 	NOT-FOR-US: Android
 CVE-2017-0600 (A remote denial of service vulnerability in libstagefright in ...)
-	TODO: check
+	NOT-FOR-US: libstagefright
 CVE-2017-0599 (A remote denial of service vulnerability in libhevc in Mediaserver ...)
-	TODO: check
+	NOT-FOR-US: Android Mediaserver
 CVE-2017-0598 (An information disclosure vulnerability in the Framework APIs could ...)
 	NOT-FOR-US: Android
 CVE-2017-0597 (An elevation of privilege vulnerability in Audioserver could enable a ...)
 	NOT-FOR-US: Android Audioserver
 CVE-2017-0596 (An elevation of privilege vulnerability in libstagefright in ...)
-	TODO: check
+	NOT-FOR-US: libstagefright
 CVE-2017-0595 (An elevation of privilege vulnerability in libstagefright in ...)
-	TODO: check
+	NOT-FOR-US: libstagefright
 CVE-2017-0594 (An elevation of privilege vulnerability in ...)
-	TODO: check
+	NOT-FOR-US: libstagefright
 CVE-2017-0593 (An elevation of privilege vulnerability in the Framework APIs could ...)
 	NOT-FOR-US: Android
 CVE-2017-0592 (A remote code execution vulnerability in FLACExtractor.cpp in ...)
-	TODO: check
+	NOT-FOR-US: Android
 CVE-2017-0591 (A remote code execution vulnerability in libavc in Mediaserver could ...)
-	TODO: check
+	NOT-FOR-US: Android Mediaserver
 CVE-2017-0590 (A remote code execution vulnerability in libhevc in Mediaserver could ...)
-	TODO: check
+	NOT-FOR-US: Android Mediaserver
 CVE-2017-0589 (A remote code execution vulnerability in libhevc in Mediaserver could ...)
-	TODO: check
+	NOT-FOR-US: Android Mediaserver
 CVE-2017-0588 (A remote code execution vulnerability in id3/ID3.cpp in libstagefright ...)
-	TODO: check
+	NOT-FOR-US: libstagefright
 CVE-2017-0587 (A remote code execution vulnerability in libmpeg2 in Mediaserver could ...)
-	TODO: check
+	NOT-FOR-US: libstagefright
 CVE-2017-0586 (An information disclosure vulnerability in the Qualcomm sound driver ...)
 	NOT-FOR-US: Qualcomm driver for Android
 CVE-2017-0585 (An information disclosure vulnerability in the Broadcom Wi-Fi driver ...)
@@ -39920,7 +39920,7 @@
 CVE-2016-4865 (Cross-site scripting (XSS) vulnerability in the "Customapp" function ...)
 	NOT-FOR-US: Cybozu
 CVE-2016-4864 (H2O versions 2.0.3 and earlier and 2.1.0-beta2 and earlier allows ...)
-	TODO: check
+	NOT-FOR-US: H2O
 CVE-2016-4863
 	RESERVED
 CVE-2016-4862 (Twigmo bundled with CS-Cart 4.3.9 and earlier and Twigmo bundled with ...)




More information about the Secure-testing-commits mailing list