[Secure-testing-commits] r55485 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Sep 5 21:22:08 UTC 2017


Author: jmm
Date: 2017-09-05 21:22:08 +0000 (Tue, 05 Sep 2017)
New Revision: 55485

Modified:
   data/CVE/list
Log:
new scrapy issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-05 21:20:36 UTC (rev 55484)
+++ data/CVE/list	2017-09-05 21:22:08 UTC (rev 55485)
@@ -2,8 +2,11 @@
 	- openldap <unfixed>
 	[stretch] - openldap <no-dsa> (Minor issue)
 	[jessie] - openldap <no-dsa> (Minor issue)
+	NOTE: http://www.openldap.org/its/index.cgi?findid=8703
 CVE-2017-14158 (Scrapy 1.4 allows remote attackers to cause a denial of service (memory ...)
-	TODO: check
+	- python-scrapy <unfixed>
+	NOTE: http://blog.csdn.net/wangtua/article/details/75228728
+	NOTE: https://github.com/scrapy/scrapy/issues/482
 CVE-2017-14157
 	RESERVED
 CVE-2017-14156 (The atyfb_ioctl function in drivers/video/fbdev/aty/atyfb_base.c in the ...)




More information about the Secure-testing-commits mailing list