[Secure-testing-commits] r55922 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Sep 20 08:31:33 UTC 2017


Author: carnil
Date: 2017-09-20 08:31:33 +0000 (Wed, 20 Sep 2017)
New Revision: 55922

Modified:
   data/CVE/list
Log:
Add new samba issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-20 06:38:50 UTC (rev 55921)
+++ data/CVE/list	2017-09-20 08:31:33 UTC (rev 55922)
@@ -6701,8 +6701,10 @@
 	[wheezy] - gdm3 <not-affected> (Vulnerable code not present)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1490417
 	NOTE: Introduced in https://git.gnome.org/browse/gdm/commit/?id=ff98b28
-CVE-2017-12163
+CVE-2017-12163 [Server memory information leak over SMB1]
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2017-12163.html
 CVE-2017-12162
 	RESERVED
 CVE-2017-12161
@@ -6736,10 +6738,14 @@
 	NOTE: https://marc.info/?l=linux-wireless&m=150525493517953&w=2
 CVE-2017-12152
 	RESERVED
-CVE-2017-12151
+CVE-2017-12151 [SMB3 connections don't keep encryption across DFS redirects]
 	RESERVED
-CVE-2017-12150
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2017-12151.html
+CVE-2017-12150 [SMB1/2/3 connections may not require signing where they should]
 	RESERVED
+	- samba <unfixed>
+	NOTE: https://www.samba.org/samba/security/CVE-2017-12150.html
 CVE-2017-12149
 	RESERVED
 	TODO: check, maybe in jbossas4




More information about the Secure-testing-commits mailing list