[Secure-testing-commits] r56903 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Sat Oct 21 09:10:28 UTC 2017


Author: sectracker
Date: 2017-10-21 09:10:28 +0000 (Sat, 21 Oct 2017)
New Revision: 56903

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-20 21:28:11 UTC (rev 56902)
+++ data/CVE/list	2017-10-21 09:10:28 UTC (rev 56903)
@@ -12331,8 +12331,7 @@
 	RESERVED
 CVE-2017-11293
 	RESERVED
-CVE-2017-11292
-	RESERVED
+CVE-2017-11292 (Adobe Flash Player version 27.0.0.159 and earlier has a flawed bytecode ...)
 	NOT-FOR-US: Adobe Flash Player
 CVE-2017-11291
 	RESERVED
@@ -84134,8 +84133,7 @@
 	[squeeze] - devscripts <not-affected> (Vulnerable code not present)
 	NOTE: Introduced in https://anonscm.debian.org/cgit/collab-maint/devscripts.git/commit/?id=025ad4ea8ba92d32bd698a83149f782c17f78bf0 (v2.15.5)
 	NOTE: http://www.openwall.com/lists/oss-security/2015/08/01/1
-CVE-2015-5699 [shell metacharacter injection in cl-* commands]
-	RESERVED
+CVE-2015-5699 (The Switch Configuration Tools Backend (clcmd_server) in Cumulus Linux ...)
 	NOT-FOR-US: Cumulus Linux
 	NOTE: https://lists.cumulusnetworks.com/pipermail/cumulus-security-announce/2015-July/000002.html
 CVE-2015-5698 (Cross-site request forgery (CSRF) vulnerability in the web server on ...)
@@ -85780,8 +85778,7 @@
 	NOTE: https://fedorahosted.org/freeipa/ticket/5153
 CVE-2015-5178 (The Management Console in Red Hat Enterprise Application Platform ...)
 	NOT-FOR-US: JBoss EAP
-CVE-2015-5177 [double free in SLPDProcessMessage()]
-	RESERVED
+CVE-2015-5177 (Double free vulnerability in the SLPDKnownDAAdd function in ...)
 	{DSA-3353-1 DLA-304-1}
 	- openslp-dfsg 1.2.1-11 (bug #795429)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2015-5177




More information about the Secure-testing-commits mailing list