[Secure-testing-commits] r57690 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Nov 16 21:20:20 UTC 2017


Author: carnil
Date: 2017-11-16 21:20:20 +0000 (Thu, 16 Nov 2017)
New Revision: 57690

Modified:
   data/CVE/list
Log:
Add source package name for CVE-2017-15864

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-16 21:16:44 UTC (rev 57689)
+++ data/CVE/list	2017-11-16 21:20:20 UTC (rev 57690)
@@ -2917,7 +2917,9 @@
 CVE-2017-15865 (bgpd in FRRouting (FRR) before 2.0.2 and 3.x before 3.0.2, as used in ...)
 	- frr <itp> (bug #863249)
 CVE-2017-15864 (In the Agent Frontend in Open Ticket Request System (OTRS) 3.3.x ...)
-	TODO: check
+	- otrs2 <undetermined>
+	NOTE: https://www.otrs.com/security-advisory-2017-06-security-update-otrs-3-3/
+	TODO: check, upstream claims affects only 3.3.x series
 CVE-2016-10517 (networking.c in Redis before 3.2.7 allows "Cross Protocol Scripting" ...)
 	{DLA-1161-1}
 	- redis 3:3.2.7-1




More information about the Secure-testing-commits mailing list