[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Tue Feb 27 09:10:22 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
8e479132 by security tracker role at 2018-02-27T09:10:14+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,11 +1,103 @@
+CVE-2018-7537
+	RESERVED
+CVE-2018-7536
+	RESERVED
+CVE-2018-7535
+	RESERVED
+CVE-2018-7534
+	RESERVED
+CVE-2018-7533
+	RESERVED
+CVE-2018-7532
+	RESERVED
+CVE-2018-7531
+	RESERVED
+CVE-2018-7530
+	RESERVED
+CVE-2018-7529
+	RESERVED
+CVE-2018-7528
+	RESERVED
+CVE-2018-7527
+	RESERVED
+CVE-2018-7526
+	RESERVED
+CVE-2018-7525
+	RESERVED
+CVE-2018-7524
+	RESERVED
+CVE-2018-7523
+	RESERVED
+CVE-2018-7522
+	RESERVED
+CVE-2018-7521
+	RESERVED
+CVE-2018-7520
+	RESERVED
+CVE-2018-7519
+	RESERVED
+CVE-2018-7518
+	RESERVED
+CVE-2018-7517
+	RESERVED
+CVE-2018-7516
+	RESERVED
+CVE-2018-7515
+	RESERVED
+CVE-2018-7514
+	RESERVED
+CVE-2018-7513
+	RESERVED
+CVE-2018-7512
+	RESERVED
+CVE-2018-7511
+	RESERVED
+CVE-2018-7510
+	RESERVED
+CVE-2018-7509
+	RESERVED
+CVE-2018-7508
+	RESERVED
+CVE-2018-7507
+	RESERVED
+CVE-2018-7506
+	RESERVED
+CVE-2018-7505
+	RESERVED
+CVE-2018-7504
+	RESERVED
+CVE-2018-7503
+	RESERVED
+CVE-2018-7502
+	RESERVED
+CVE-2018-7501
+	RESERVED
+CVE-2018-7500
+	RESERVED
+CVE-2018-7499
+	RESERVED
+CVE-2018-7498
+	RESERVED
+CVE-2018-7497
+	RESERVED
+CVE-2018-7496
+	RESERVED
+CVE-2018-7495
+	RESERVED
+CVE-2018-7494
+	RESERVED
+CVE-2018-7493
+	RESERVED
+CVE-2017-18202 (The __oom_reap_task_mm function in mm/oom_kill.c in the Linux kernel ...)
+	TODO: check
 CVE-2018-7492 (A NULL pointer dereference was found in the net/rds/rdma.c ...)
 	- linux 4.14.7-1
 	[stretch] - linux 4.9.80-1
 	NOTE: Fixed by: https://git.kernel.org/linus/f3069c6d33f6ae63a1668737bc78aaaa51bff7ca
 CVE-2018-7491 (In PrestaShop through 1.7.2.5, a UI-Redressing/Clickjacking ...)
 	NOT-FOR-US: PrestaShop
-CVE-2018-7490
-	RESERVED
+CVE-2018-7490 (uWSGI before 2.0.17 mishandles a DOCUMENT_ROOT check during use of the ...)
+	TODO: check
 CVE-2018-7489 (FasterXML jackson-databind before 2.8.11.1 and 2.9.x before 2.9.5 ...)
 	- jackson-databind <unfixed> (bug #891614)
 	NOTE: https://github.com/FasterXML/jackson-databind/issues/1931
@@ -7092,96 +7184,96 @@ CVE-2018-4918
 	RESERVED
 CVE-2018-4917
 	RESERVED
-CVE-2018-4916
-	RESERVED
-CVE-2018-4915
-	RESERVED
-CVE-2018-4914
-	RESERVED
-CVE-2018-4913
-	RESERVED
-CVE-2018-4912
-	RESERVED
-CVE-2018-4911
-	RESERVED
-CVE-2018-4910
-	RESERVED
-CVE-2018-4909
-	RESERVED
-CVE-2018-4908
-	RESERVED
-CVE-2018-4907
-	RESERVED
-CVE-2018-4906
-	RESERVED
-CVE-2018-4905
-	RESERVED
-CVE-2018-4904
-	RESERVED
-CVE-2018-4903
-	RESERVED
-CVE-2018-4902
-	RESERVED
-CVE-2018-4901
-	RESERVED
-CVE-2018-4900
-	RESERVED
-CVE-2018-4899
-	RESERVED
-CVE-2018-4898
-	RESERVED
-CVE-2018-4897
-	RESERVED
-CVE-2018-4896
-	RESERVED
-CVE-2018-4895
-	RESERVED
-CVE-2018-4894
-	RESERVED
-CVE-2018-4893
-	RESERVED
-CVE-2018-4892
-	RESERVED
-CVE-2018-4891
-	RESERVED
-CVE-2018-4890
-	RESERVED
-CVE-2018-4889
-	RESERVED
-CVE-2018-4888
-	RESERVED
-CVE-2018-4887
-	RESERVED
-CVE-2018-4886
-	RESERVED
-CVE-2018-4885
-	RESERVED
-CVE-2018-4884
-	RESERVED
-CVE-2018-4883
-	RESERVED
-CVE-2018-4882
-	RESERVED
-CVE-2018-4881
-	RESERVED
-CVE-2018-4880
-	RESERVED
-CVE-2018-4879
-	RESERVED
+CVE-2018-4916 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4915 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4914 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4913 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4912 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4911 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4910 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4909 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4908 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4907 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4906 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4905 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4904 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4903 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4902 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4901 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4900 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4899 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4898 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4897 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4896 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4895 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4894 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4893 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4892 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4891 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4890 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4889 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4888 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4887 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4886 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4885 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4884 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4883 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4882 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4881 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4880 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
+CVE-2018-4879 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
 CVE-2018-4878 (A use-after-free vulnerability was discovered in Adobe Flash Player ...)
 	NOT-FOR-US: Adobe Flash Player
 CVE-2018-4877 (A use-after-free vulnerability was discovered in Adobe Flash Player ...)
 	NOT-FOR-US: Adobe Flash Player
-CVE-2018-4876
-	RESERVED
-CVE-2018-4875
-	RESERVED
+CVE-2018-4876 (Adobe Experience Manager versions 6.3, 6.2, and 6.1 are vulnerable to ...)
+	TODO: check
+CVE-2018-4875 (Adobe Experience Manager versions 6.1 and 6.0 are vulnerable to a ...)
+	TODO: check
 CVE-2018-4874
 	RESERVED
 CVE-2018-4873
 	RESERVED
-CVE-2018-4872
-	RESERVED
+CVE-2018-4872 (An issue was discovered in Adobe Acrobat Reader 2018.009.20050 and ...)
+	TODO: check
 CVE-2018-4871 (An Out-of-bounds Read issue was discovered in Adobe Flash Player before ...)
 	NOT-FOR-US: Adobe Flash Player
 CVE-2018-4870
@@ -18120,8 +18212,8 @@ CVE-2018-0910
 	RESERVED
 CVE-2018-0909
 	RESERVED
-CVE-2018-0908
-	RESERVED
+CVE-2018-0908 (Microsoft Identity Manager 2016 SP1 allows an attacker to gain ...)
+	TODO: check
 CVE-2018-0907
 	RESERVED
 CVE-2018-0906
@@ -21069,10 +21161,10 @@ CVE-2017-16820 (The csnmp_read_table function in snmp.c in the SNMP plugin in co
 	[jessie] - collectd <no-dsa> (Minor issue)
 	[wheezy] - collectd <not-affected> (Vulnerable code not present)
 	NOTE: https://github.com/collectd/collectd/issues/2291
-CVE-2017-16814
-	RESERVED
-CVE-2017-16813
-	RESERVED
+CVE-2017-16814 (A Directory Traversal issue was discovered in the Foxit MobilePDF app ...)
+	TODO: check
+CVE-2017-16813 (A denial-of-service issue was discovered in the Foxit MobilePDF app ...)
+	TODO: check
 CVE-2017-16812
 	RESERVED
 CVE-2017-16811
@@ -22606,8 +22698,8 @@ CVE-2017-16231 [match() stack overflow]
 	- pcre3 <unfixed> (unimportant)
 CVE-2017-16230 (In admin/write-post.php in Typecho through 1.1, one can log in to the ...)
 	NOT-FOR-US: Typecho
-CVE-2017-16229
-	RESERVED
+CVE-2017-16229 (In the Ox gem 2.8.1 for Ruby, the process crashes with a stack-based ...)
+	TODO: check
 CVE-2017-16228 (Dulwich before 0.18.5, when an SSH subprocess is used, allows remote ...)
 	- dulwich 0.18.5-1
 	[stretch] - dulwich <no-dsa> (Minor issue)
@@ -36347,14 +36439,14 @@ CVE-2017-11636 (GraphicsMagick 1.3.26 has a heap overflow in the WriteRGBImage()
 	{DLA-1045-1}
 	- graphicsmagick 1.3.26-4 (bug #870149)
 	NOTE: http://hg.code.sf.net/p/graphicsmagick/code/rev/39961adf974c
-CVE-2017-11635
-	RESERVED
-CVE-2017-11634
-	RESERVED
-CVE-2017-11633
-	RESERVED
-CVE-2017-11632
-	RESERVED
+CVE-2017-11635 (An issue was discovered on Wireless IP Camera 360 devices. Attackers ...)
+	TODO: check
+CVE-2017-11634 (An issue was discovered on Wireless IP Camera 360 devices. Remote ...)
+	TODO: check
+CVE-2017-11633 (An issue was discovered on Wireless IP Camera 360 devices. Remote ...)
+	TODO: check
+CVE-2017-11632 (An issue was discovered on Wireless IP Camera 360 devices. A root ...)
+	TODO: check
 CVE-2017-11631 (dapur/app/app_user/controller/status.php in Fiyo CMS 2.0.7 has SQL ...)
 	NOT-FOR-US: Fiyo CMS
 CVE-2017-11630 (dapur\apps\app_config\controller\backuper.php in Fiyo CMS 2.0.7 allows ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/8e4791325dd725e563e940d6388eaad0f8bf7411

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/8e4791325dd725e563e940d6388eaad0f8bf7411
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180227/4d32a65a/attachment-0001.html>


More information about the Secure-testing-commits mailing list