[Secure-testing-commits] r56931 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Oct 23 21:25:48 UTC 2017


Author: jmm
Date: 2017-10-23 21:25:48 +0000 (Mon, 23 Oct 2017)
New Revision: 56931

Modified:
   data/CVE/list
Log:
new suricata issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-23 21:23:45 UTC (rev 56930)
+++ data/CVE/list	2017-10-23 21:25:48 UTC (rev 56931)
@@ -965,7 +965,9 @@
 CVE-2017-15378 (SQL Injection exists in the E-Sic 1.0 password reset parameter (aka the ...)
 	NOT-FOR-US: E-Sic 
 CVE-2017-15377 (In Suricata before 4.x, it was possible to trigger lots of redundant ...)
-	TODO: check
+	- suricata <unfixed>
+	NOTE: https://github.com/OISF/suricata/pull/2680/commits/47afc577ff763150f9b47f10331f5ef9eb847a57
+	NOTE: https://redmine.openinfosecfoundation.org/issues/2231
 CVE-2017-15376 (The TELNET service in Mobatek MobaXterm 10.4 does not require ...)
 	NOT-FOR-US: Mobatek MobaXterm
 CVE-2017-15375 (Multiple client-side cross site scripting vulnerabilities have been ...)




More information about the Secure-testing-commits mailing list