[Secure-testing-commits] r55594 - data/CVE

security tracker role sectracker at moszumanska.debian.org
Sat Sep 9 09:10:12 UTC 2017


Author: sectracker
Date: 2017-09-09 09:10:12 +0000 (Sat, 09 Sep 2017)
New Revision: 55594

Modified:
   data/CVE/list
Log:
automatic update

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-09 09:03:52 UTC (rev 55593)
+++ data/CVE/list	2017-09-09 09:10:12 UTC (rev 55594)
@@ -1,3 +1,19 @@
+CVE-2017-14229 (There is an infinite loop in the jpc_dec_tileinit function in ...)
+	TODO: check
+CVE-2017-14228 (In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access ...)
+	TODO: check
+CVE-2017-14227 (In MongoDB libbson 1.7.0, the bson_iter_codewscope function in ...)
+	TODO: check
+CVE-2017-14226 (WP1StylesListener.cpp, WP5StylesListener.cpp, and ...)
+	TODO: check
+CVE-2017-14225 (The av_color_primaries_name function in libavutil/pixdesc.c in FFmpeg ...)
+	TODO: check
+CVE-2017-14224 (A heap-based buffer overflow in WritePCXImage in coders/pcx.c in ...)
+	TODO: check
+CVE-2017-14223 (In libavformat/asfdec_f.c in FFmpeg 3.3.3, a DoS in ...)
+	TODO: check
+CVE-2017-14222 (In libavformat/mov.c in FFmpeg 3.3.3, a DoS in read_tfra() due to lack ...)
+	TODO: check
 CVE-2017-14221
 	RESERVED
 CVE-2017-14220
@@ -143,6 +159,7 @@
 CVE-2017-14160
 	RESERVED
 CVE-2017-14176 [bzr+ssh URLs don't strip SSH options]
+	RESERVED
 	- bzr 2.7.0+bzr6622-7 (bug #874429)
 	NOTE: https://bugs.launchpad.net/bzr/+bug/1710979
 CVE-2017-14159 (slapd in OpenLDAP 2.4.45 and earlier creates a PID file after dropping ...)
@@ -4261,12 +4278,12 @@
 	NOT-FOR-US: Siemens
 CVE-2017-12734 (A vulnerability has been identified in Siemens LOGO! devices before ...)
 	NOT-FOR-US: Siemens
-CVE-2017-12733
-	RESERVED
+CVE-2017-12733 (A Missing Authentication for Critical Function issue was discovered in ...)
+	TODO: check
 CVE-2017-12732
 	RESERVED
-CVE-2017-12731
-	RESERVED
+CVE-2017-12731 (A SQL Injection issue was discovered in OPW Fuel Management Systems ...)
+	TODO: check
 CVE-2017-12730
 	RESERVED
 CVE-2017-12729
@@ -4329,8 +4346,8 @@
 	RESERVED
 CVE-2017-12700
 	RESERVED
-CVE-2017-12699
-	RESERVED
+CVE-2017-12699 (An Incorrect Default Permissions issue was discovered in AzeoTech ...)
+	TODO: check
 CVE-2017-12698 (An Improper Authentication issue was discovered in Advantech WebAccess ...)
 	NOT-FOR-US: Advantech WebAccess
 CVE-2017-12697
@@ -17279,10 +17296,10 @@
 	RESERVED
 CVE-2017-8042
 	RESERVED
-CVE-2017-8041
-	RESERVED
-CVE-2017-8040
-	RESERVED
+CVE-2017-8041 (In Single Sign-On for Pivotal Cloud Foundry (PCF) 1.3.x versions prior ...)
+	TODO: check
+CVE-2017-8040 (In Single Sign-On for Pivotal Cloud Foundry (PCF) 1.3.x versions prior ...)
+	TODO: check
 CVE-2017-8039
 	RESERVED
 CVE-2017-8038
@@ -27085,8 +27102,8 @@
 	NOT-FOR-US: St. Jude Medical Merlin at home
 CVE-2017-5148
 	RESERVED
-CVE-2017-5147
-	RESERVED
+CVE-2017-5147 (An Uncontrolled Search Path Element issue was discovered in AzeoTech ...)
+	TODO: check
 CVE-2017-5146 (An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware ...)
 	NOT-FOR-US: Carlo Gavazzi
 CVE-2017-5145 (An issue was discovered in Carlo Gavazzi VMU-C EM prior to firmware ...)




More information about the Secure-testing-commits mailing list