[Secure-testing-commits] r55388 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Sep 2 17:11:49 UTC 2017


Author: carnil
Date: 2017-09-02 17:11:49 +0000 (Sat, 02 Sep 2017)
New Revision: 55388

Modified:
   data/CVE/list
Log:
CVEs assigned for asterisk issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-02 15:38:08 UTC (rev 55387)
+++ data/CVE/list	2017-09-02 17:11:49 UTC (rev 55388)
@@ -54,12 +54,6 @@
 	NOTE: http://lists.roaringpenguin.com/pipermail/mimedefang/2017-August/038085.html
 CVE-2017-14101
 	RESERVED
-CVE-2017-14100
-	RESERVED
-CVE-2017-14099
-	RESERVED
-CVE-2017-14098
-	RESERVED
 CVE-2017-14097
 	RESERVED
 CVE-2017-14096
@@ -100,16 +94,16 @@
 	RESERVED
 CVE-2017-14078
 	RESERVED
-CVE-2017-XXXX [AST-2017-007: Remote Crash Vulerability in res_pjsip]
+CVE-2017-14098 [AST-2017-007: Remote Crash Vulerability in res_pjsip]
 	- asterisk <unfixed> (bug #873909)
 	[stretch] - asterisk <not-affected> (Vulnerable code not present; issue introduced in 13.15)
 	[jessie] - asterisk <not-affected> (Vulnerable code not present; issue introduced in 13.15)
 	[wheezy] - asterisk <not-affected> (Vulnerable code not present; issue introduced in 13.15)
 	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27152
-CVE-2017-XXXX [AST-2017-006: Shell access command injection inapp_minivm]
+CVE-2017-14100 [AST-2017-006: Shell access command injection inapp_minivm]
 	- asterisk <unfixed> (bug #873908)
 	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27103
-CVE-2017-XXXX [AST-2017-005: Media takeover in RTP stack]
+CVE-2017-14099 [AST-2017-005: Media takeover in RTP stack]
 	- asterisk <unfixed> (bug #873907)
 	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27013
 CVE-2017-14077




More information about the Secure-testing-commits mailing list