[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] triage out more minor issues away from lts
Antoine Beaupré
anarcat at debian.org
Wed Apr 11 20:56:23 BST 2018
Antoine Beaupré pushed to branch master at Debian Security Tracker / security-tracker
Commits:
f8173581 by Antoine Beaupré at 2018-04-11T15:55:16-04:00
triage out more minor issues away from lts
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -8,6 +8,7 @@ CVE-2018-9996 (An issue was discovered in cplus-dem.c in GNU libiberty, as ...)
- binutils <unfixed>
[stretch] - binutils <ignored> (Minor issue)
[jessie] - binutils <ignored> (Minor issue)
+ [wheezy] - binutils <ignored> (Minor issue)
NOTE: https://gcc.gnu.org/bugzilla/show_bug.cgi?id=85304
CVE-2018-9995 (TBK DVR4104 and DVR4216 devices allow remote attackers to bypass ...)
NOT-FOR-US: TBK DVR4104 and DVR4216 devices
@@ -31,6 +32,7 @@ CVE-2018-10016 (Netwide Assembler (NASM) 2.14rc0 has a division-by-zero vulnerab
- nasm <unfixed> (bug #895408)
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: ttps://bugzilla.nasm.us/show_bug.cgi?id=3392473
CVE-2018-10015
RESERVED
@@ -227,6 +229,7 @@ CVE-2018-9918 (libqpdf.a in QPDF through 8.0.2 mishandles certain "expected
- qpdf <unfixed> (bug #895443)
[stretch] - qpdf <no-dsa> (Minor issue)
[jessie] - qpdf <no-dsa> (Minor issue)
+ [wheezy] - qpdf <no-dsa> (Minor issue)
NOTE: https://github.com/qpdf/qpdf/issues/202
CVE-2018-9917
RESERVED
@@ -1744,6 +1747,7 @@ CVE-2017-18258 (The xz_head function in xzlib.c in libxml2 before 2.9.6 allows r
- libxml2 <unfixed> (bug #895245)
[stretch] - libxml2 <postponed> (Minor issue; wait for upstream fix for upstream bug 794914)
[jessie] - libxml2 <postponed> (Minor issue; wait for upstream fix for upstream bug 794914)
+ [wheezy] - libxml2 <postponed> (Minor issue; wait for upstream fix for upstream bug 794914)
NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=786696
NOTE: Fixed by: https://git.gnome.org/browse/libxml2/commit/?id=e2a9122b8dde53d320750451e9907a7dcb2ca8bb
NOTE: When fixing this issue make sure to not open CVE-2018-9251 and apply
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f81735815e155ce56e1e32c50e71809963aee027
---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/f81735815e155ce56e1e32c50e71809963aee027
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180411/423665ff/attachment.html>
More information about the debian-security-tracker-commits
mailing list