[Secure-testing-commits] r55954 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Sep 21 04:34:44 UTC 2017


Author: carnil
Date: 2017-09-21 04:34:44 +0000 (Thu, 21 Sep 2017)
New Revision: 55954

Modified:
   data/CVE/list
Log:
Add follow-up issue for asterisk to AST-2017-008, to a separate CVE

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-09-20 21:28:34 UTC (rev 55953)
+++ data/CVE/list	2017-09-21 04:34:44 UTC (rev 55954)
@@ -36,8 +36,12 @@
 	NOTE: https://micahflee.com/2017/04/breaking-the-security-model-of-subgraph-os/
 	NOTE: https://github.com/freedomofpress/securedrop/issues/2238
 	NOTE: https://github.com/GNOME/nautilus/commit/1630f53481f445ada0a455e9979236d31a8d3bb0
-CVE-2017-14603
+CVE-2017-14603 [followup-to AST-2017-008]
 	RESERVED
+	- asterisk <unfixed>
+	NOTE: http://downloads.asterisk.org/pub/security/AST-2017-008.html
+	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27274
+	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27252
 CVE-2017-14602
 	RESERVED
 CVE-2017-14601 (Pragyan CMS v3.0 is vulnerable to a Boolean-based SQL injection in ...)




More information about the Secure-testing-commits mailing list