[Secure-testing-commits] r57554 - data/CVE
Ola Lundqvist
opal at moszumanska.debian.org
Sat Nov 11 18:30:04 UTC 2017
Author: opal
Date: 2017-11-11 18:30:04 +0000 (Sat, 11 Nov 2017)
New Revision: 57554
Modified:
data/CVE/list
Log:
Triage result.
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-11-11 18:04:31 UTC (rev 57553)
+++ data/CVE/list 2017-11-11 18:30:04 UTC (rev 57554)
@@ -238,11 +238,13 @@
NOT-FOR-US: Datto Backup Agent
CVE-2017-16672 (An issue was discovered in Asterisk Open Source 13 before 13.18.1, 14 ...)
- asterisk 1:13.18.1~dfsg-1 (bug #881256)
+ [wheezy] - asterisk <no-dsa> (Minor issue)
NOTE: http://downloads.digium.com/pub/security/AST-2017-011.html
NOTE: http://downloads.asterisk.org/pub/security/AST-2017-011-13.diff
NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27345
CVE-2017-16671 (A Buffer Overflow issue was discovered in Asterisk Open Source 13 ...)
- asterisk 1:13.18.1~dfsg-1 (bug #881257)
+ [wheezy] - asterisk <not-affected> (Vulnerable code do not exist)
NOTE: http://downloads.digium.com/pub/security/AST-2017-010.html
NOTE: http://downloads.asterisk.org/pub/security/AST-2017-010-13.diff
NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27337
@@ -270,6 +272,7 @@
RESERVED
CVE-2017-16667 (backintime (aka Back in Time) before 1.1.24 did improper ...)
- backintime <unfixed> (bug #881205)
+ [wheezy] - backintime <not-affected> (Vulnerable code does not exist)
NOTE: https://github.com/bit-team/backintime/issues/834
NOTE: https://github.com/bit-team/backintime/commit/cef81d0da93ff601252607df3db1a48f7f6f01b3
CVE-2017-16663 (In sam2p 0.49.4, there are integer overflows (with resultant heap-based ...)
More information about the Secure-testing-commits
mailing list