[Secure-testing-commits] r55747 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Sep 13 22:20:29 UTC 2017


Author: jmm
Date: 2017-09-13 22:20:29 +0000 (Wed, 13 Sep 2017)
New Revision: 55747

Modified:
   data/CVE/list
Log:
"new" trafficserver issues
NFUs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-13 22:17:47 UTC (rev 55746)
+++ data/CVE/list	2017-09-13 22:20:29 UTC (rev 55747)
@@ -37187,7 +37187,7 @@
 CVE-2017-1557
 	RESERVED
 CVE-2017-1556 (IBM API Connect 5.0.7.0 through 5.0.7.2 is vulnerable to a regular ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1555
 	RESERVED
 CVE-2017-1554
@@ -37283,7 +37283,7 @@
 CVE-2017-1509
 	RESERVED
 CVE-2017-1508 (IBM Informix Dynamic Server 12.1 could allow a local user logged in ...)
-	TODO: check
+	NOT-FOR-US: IBM
 CVE-2017-1507
 	RESERVED
 CVE-2017-1506
@@ -81681,7 +81681,7 @@
 CVE-2015-5207 (Apache Cordova iOS before 4.0.0 might allow attackers to bypass a URL ...)
 	NOT-FOR-US: Apache Cordova
 CVE-2015-5206 (Unspecified vulnerability in the HTTP/2 experimental feature in Apache ...)
-	TODO: check
+	- trafficserver 6.0.0-1
 CVE-2015-5205
 	RESERVED
 CVE-2015-5204 (CRLF injection vulnerability in the Apache Cordova File Transfer ...)
@@ -81816,7 +81816,7 @@
 	RESERVED
 	- libstruts1.2-java <not-affected> (Affects 2.0.0 - 2.3.16.3)
 CVE-2015-5168 (Unspecified vulnerability in the HTTP/2 experimental feature in Apache ...)
-	TODO: check
+	- trafficserver 6.0.0-1
 CVE-2015-5167 (The Policy Admin Tool in Apache Ranger before 0.5.1 allows remote ...)
 	NOT-FOR-US: Apache Ranger
 CVE-2015-5166 (Use-after-free vulnerability in QEMU in Xen 4.5.x and earlier does not ...)




More information about the Secure-testing-commits mailing list