[Secure-testing-commits] r57554 - data/CVE

Ola Lundqvist opal at moszumanska.debian.org
Sat Nov 11 18:30:04 UTC 2017


Author: opal
Date: 2017-11-11 18:30:04 +0000 (Sat, 11 Nov 2017)
New Revision: 57554

Modified:
   data/CVE/list
Log:
Triage result.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-11 18:04:31 UTC (rev 57553)
+++ data/CVE/list	2017-11-11 18:30:04 UTC (rev 57554)
@@ -238,11 +238,13 @@
 	NOT-FOR-US: Datto Backup Agent
 CVE-2017-16672 (An issue was discovered in Asterisk Open Source 13 before 13.18.1, 14 ...)
 	- asterisk 1:13.18.1~dfsg-1 (bug #881256)
+	[wheezy] - asterisk <no-dsa> (Minor issue)
 	NOTE: http://downloads.digium.com/pub/security/AST-2017-011.html
 	NOTE: http://downloads.asterisk.org/pub/security/AST-2017-011-13.diff
 	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27345
 CVE-2017-16671 (A Buffer Overflow issue was discovered in Asterisk Open Source 13 ...)
 	- asterisk 1:13.18.1~dfsg-1 (bug #881257)
+	[wheezy] - asterisk <not-affected> (Vulnerable code do not exist)
 	NOTE: http://downloads.digium.com/pub/security/AST-2017-010.html
 	NOTE: http://downloads.asterisk.org/pub/security/AST-2017-010-13.diff
 	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27337
@@ -270,6 +272,7 @@
 	RESERVED
 CVE-2017-16667 (backintime (aka Back in Time) before 1.1.24 did improper ...)
 	- backintime <unfixed> (bug #881205)
+	[wheezy] - backintime <not-affected> (Vulnerable code does not exist)
 	NOTE: https://github.com/bit-team/backintime/issues/834
 	NOTE: https://github.com/bit-team/backintime/commit/cef81d0da93ff601252607df3db1a48f7f6f01b3
 CVE-2017-16663 (In sam2p 0.49.4, there are integer overflows (with resultant heap-based ...)




More information about the Secure-testing-commits mailing list