[Secure-testing-commits] r57762 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Nov 17 23:18:59 UTC 2017


Author: carnil
Date: 2017-11-17 23:18:59 +0000 (Fri, 17 Nov 2017)
New Revision: 57762

Modified:
   data/CVE/list
Log:
Mark CVE-2017-16869 as unimportant

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-17 23:04:25 UTC (rev 57761)
+++ data/CVE/list	2017-11-17 23:18:59 UTC (rev 57762)
@@ -53,8 +53,9 @@
 CVE-2017-16870 (The UpdraftPlus plugin through 1.13.12 for WordPress has SSRF in the ...)
 	NOT-FOR-US: UpdraftPlus plugin for WordPress
 CVE-2017-16869 (p_mach.cpp in UPX 3.94 allows remote attackers to cause a denial of ...)
-	- upx-ucl <unfixed> (bug #882041)
+	- upx-ucl <unfixed> (bug #882041; unimportant)
 	NOTE: https://github.com/upx/upx/issues/146
+	NOTE: crash in CLI tool, no security impact
 CVE-2017-16868 (In SWFTools 0.9.2, the wav_convert2mono function in lib/wav.c does not ...)
 	- swftools <unfixed>
 	NOTE: https://github.com/matthiaskramm/swftools/issues/52




More information about the Secure-testing-commits mailing list