[Secure-testing-commits] r55369 - data/CVE

Raphaël Hertzog hertzog at moszumanska.debian.org
Fri Sep 1 16:02:46 UTC 2017


Author: hertzog
Date: 2017-09-01 16:02:46 +0000 (Fri, 01 Sep 2017)
New Revision: 55369

Modified:
   data/CVE/list
Log:
Ignore sleuthkit CVE on wheezy

The forensics tools are rarely used on external untrusted input. And
when they are, it is often done by security experts who are likely
rather cautious. And those CVE are denial of services only, so not
very dangerous either.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-01 14:50:38 UTC (rev 55368)
+++ data/CVE/list	2017-09-01 16:02:46 UTC (rev 55369)
@@ -762,6 +762,7 @@
 	RESERVED
 CVE-2017-13760 (In The Sleuth Kit (TSK) 4.4.2, fls hangs on a corrupt exfat image in ...)
 	- sleuthkit <unfixed> (bug #873724)
+	[wheezy] - sleuthkit <ignored> (Minor issue)
 	NOTE: https://github.com/sleuthkit/sleuthkit/issues/906
 CVE-2017-13759
 	RESERVED
@@ -777,9 +778,11 @@
 	NOTE: https://sourceware.org/git/gitweb.cgi?p=binutils-gdb.git;h=90efb6422939ca031804266fba669f77c22a274a
 CVE-2017-13756 (In The Sleuth Kit (TSK) 4.4.2, opening a crafted disk image triggers ...)
 	- sleuthkit <unfixed> (bug #873725)
+	[wheezy] - sleuthkit <ignored> (Minor issue)
 	NOTE: https://github.com/sleuthkit/sleuthkit/issues/914
 CVE-2017-13755 (In The Sleuth Kit (TSK) 4.4.2, opening a crafted ISO 9660 image ...)
 	- sleuthkit <unfixed> (bug #873726)
+	[wheezy] - sleuthkit <ignored> (Minor issue)
 	NOTE: https://github.com/sleuthkit/sleuthkit/issues/913
 CVE-2017-13754
 	RESERVED




More information about the Secure-testing-commits mailing list