[Secure-testing-commits] r56935 - data/CVE

Raphael Geissert geissert at moszumanska.debian.org
Tue Oct 24 09:13:30 UTC 2017


Author: geissert
Date: 2017-10-24 09:13:30 +0000 (Tue, 24 Oct 2017)
New Revision: 56935

Modified:
   data/CVE/list
Log:
2 apr issues, NFU


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-24 09:10:14 UTC (rev 56934)
+++ data/CVE/list	2017-10-24 09:13:30 UTC (rev 56935)
@@ -1810,7 +1810,7 @@
 CVE-2017-15082
 	RESERVED
 CVE-2017-15081 (In PHPSUGAR PHP Melody CMS 2.6.1, SQL Injection exists via the playlist ...)
-	TODO: check
+	NOT-FOR-US: PHPSUGAR PHP Melody CMS
 CVE-2017-15080
 	RESERVED
 CVE-2017-15079 (The Smush Image Compression and Optimization plugin before 2.7.6 for ...)
@@ -9060,6 +9060,7 @@
 CVE-2017-12619
 	RESERVED
 CVE-2017-12618 (Apache Portable Runtime Utility (APR-util) 1.6.0 and prior fail to ...)
+	- apr <unfixed>
 	TODO: check
 CVE-2017-12617 (When running Apache Tomcat versions 9.0.0.M1 to 9.0.0, 8.5.0 to ...)
 	- tomcat9 <itp> (bug #802312)
@@ -9086,6 +9087,7 @@
 CVE-2017-12614
 	RESERVED
 CVE-2017-12613 (When apr_exp_time*() or apr_os_exp_time*() functions are invoked with ...)
+	- apr <unfixed>
 	TODO: check
 CVE-2017-12612 (In Apache Spark 1.6.0 until 2.1.1, the launcher API performs unsafe ...)
 	NOT-FOR-US: Apache Spark




More information about the Secure-testing-commits mailing list