[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Add CVE-2018-2767

Salvatore Bonaccorso carnil at debian.org
Mon Apr 9 07:12:06 BST 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a3b5f94a by Salvatore Bonaccorso at 2018-04-09T08:11:54+02:00
Add CVE-2018-2767

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -18895,8 +18895,16 @@ CVE-2018-2769
 	RESERVED
 CVE-2018-2768
 	RESERVED
-CVE-2018-2767
+CVE-2018-2767 [Use of SSL/TLS not enforced in client library (Return of BACKRONYM)]
 	RESERVED
+	- mariadb-10.2 <unfixed>
+	- mariadb-10.1 <unfixed>
+	- mariadb-10.0 <removed>
+	- mysql-5.7 <unfixed>
+	- mysql-5.5 <removed>
+	NOTE: http://www.openwall.com/lists/oss-security/2018/04/08/2
+	NOTE: Result from an incomplete fix for CVE-2015-3152 and related CVE for
+	NOTE: Oracle products.
 CVE-2018-2766
 	RESERVED
 CVE-2018-2765



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a3b5f94abe98719384f7c40f8eb1c076c9f5a8fd

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a3b5f94abe98719384f7c40f8eb1c076c9f5a8fd
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180409/99111b16/attachment.html>


More information about the debian-security-tracker-commits mailing list