[Secure-testing-commits] r55490 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Sep 5 21:32:15 UTC 2017


Author: jmm
Date: 2017-09-05 21:32:15 +0000 (Tue, 05 Sep 2017)
New Revision: 55490

Modified:
   data/CVE/list
Log:
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-05 21:31:04 UTC (rev 55489)
+++ data/CVE/list	2017-09-05 21:32:15 UTC (rev 55490)
@@ -24412,7 +24412,7 @@
 CVE-2017-5699
 	RESERVED
 CVE-2017-5698 (Intel Active Management Technology, Intel Standard Manageability, and ...)
-	TODO: check
+	NOT-FOR-US: Intel
 CVE-2017-5697 (Insufficient clickjacking protection in the Web User Interface of ...)
 	NOT-FOR-US: Intel
 CVE-2017-5696
@@ -33315,9 +33315,9 @@
 CVE-2017-2823 (A use-after-free vulnerability exists in the .ISO parsing ...)
 	NOT-FOR-US: PowerISO
 CVE-2017-2822 (An exploitable code execution vulnerability exists in the image ...)
-	TODO: check
+	NOT-FOR-US: Lexmark
 CVE-2017-2821 (An exploitable use-after-free exists in the PDF parsing functionality ...)
-	TODO: check
+	NOT-FOR-US: Lexmark
 CVE-2017-2820 (An exploitable integer overflow vulnerability exists in the JPEG 2000 ...)
 	- poppler <unfixed> (unimportant)
 	NOTE: Debian uses openjpeg for processing JPEG 2000 images, this advisory is




More information about the Secure-testing-commits mailing list