[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Fri Jan 5 21:10:23 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ce12aa0e by security tracker role at 2018-01-05T21:10:18+00:00
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1,4 +1,40 @@
-CVE-2018-5244 [XSA-253]
+CVE-2018-5251 (In libming 0.4.8, there is an integer signedness error vulnerability ...)
+	TODO: check
+CVE-2018-5250
+	RESERVED
+CVE-2018-5249 (Cross-site scripting (XSS) vulnerability in Shaarli before 0.8.5 and ...)
+	TODO: check
+CVE-2018-5248 (In ImageMagick 7.0.7-17 Q16, there is a heap-based buffer over-read in ...)
+	TODO: check
+CVE-2018-5247 (In ImageMagick 7.0.7-17 Q16, there are memory leaks in ReadRLAImage in ...)
+	TODO: check
+CVE-2018-5246 (In ImageMagick 7.0.7-17 Q16, there are memory leaks in ReadPATTERNImage ...)
+	TODO: check
+CVE-2018-5245
+	RESERVED
+CVE-2018-5243
+	RESERVED
+CVE-2018-5242
+	RESERVED
+CVE-2018-5241
+	RESERVED
+CVE-2018-5240
+	RESERVED
+CVE-2018-5239
+	RESERVED
+CVE-2018-5238
+	RESERVED
+CVE-2018-5237
+	RESERVED
+CVE-2018-5236
+	RESERVED
+CVE-2018-5235
+	RESERVED
+CVE-2018-5234
+	RESERVED
+CVE-2017-18022 (In ImageMagick 7.0.7-12 Q16, there are memory leaks in ...)
+	TODO: check
+CVE-2018-5244 (In Xen 4.10, new infrastructure was introduced as part of an overhaul ...)
 	- xen <not-affected> (Only affects Xen 4.10 onwards)
 	NOTE: https://xenbits.xen.org/xsa/advisory-253.html
 CVE-2018-5233
@@ -311,7 +347,7 @@ CVE-2018-5080 (In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows 
 	NOT-FOR-US: K7 AntiVirus
 CVE-2018-5079 (In K7 AntiVirus 15.1.0306, the driver file (K7FWHlpr.sys) allows local ...)
 	NOT-FOR-US: K7 AntiVirus
-CVE-2017-18021
+CVE-2017-18021 (It was discovered that QtPass before 1.2.1, when using the built-in ...)
 	- qtpass 1.2.1-1
 	NOTE: https://lists.zx2c4.com/pipermail/password-store/2018-January/003165.html
 	NOTE: https://github.com/IJHack/QtPass/issues/338
@@ -14627,8 +14663,8 @@ CVE-2017-16669 (coders/wpg.c in GraphicsMagick 1.3.26 allows remote attackers to
 	NOTE: http://hg.code.sf.net/p/graphicsmagick/code/rev/fcd3ed3394f6
 CVE-2017-16668
 	RESERVED
-CVE-2017-16666
-	RESERVED
+CVE-2017-16666 (Xplico before 1.2.1 allows remote authenticated users to execute ...)
+	TODO: check
 CVE-2017-16665 (RemObjects Remoting SDK 9 1.0.0.0 for Delphi is vulnerable to a ...)
 	NOT-FOR-US: RemObjects Remoting SDK
 CVE-2017-16664 (Code injection exists in Kernel/System/Spelling.pm in Open Ticket ...)
@@ -17713,12 +17749,12 @@ CVE-2017-15552
 	RESERVED
 CVE-2017-15551
 	RESERVED
-CVE-2017-15550
-	RESERVED
-CVE-2017-15549
-	RESERVED
-CVE-2017-15548
-	RESERVED
+CVE-2017-15550 (An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, ...)
+	TODO: check
+CVE-2017-15549 (An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, ...)
+	TODO: check
+CVE-2017-15548 (An issue was discovered in EMC Avamar Server 7.1.x, 7.2.x, 7.3.x, ...)
+	TODO: check
 CVE-2017-15547
 	RESERVED
 CVE-2017-15546
@@ -51112,14 +51148,14 @@ CVE-2017-4950
 	RESERVED
 CVE-2017-4949
 	RESERVED
-CVE-2017-4948
-	RESERVED
+CVE-2017-4948 (VMware Workstation (14.x before 14.1.0 and 12.x) and Horizon View ...)
+	TODO: check
 CVE-2017-4947
 	RESERVED
-CVE-2017-4946
-	RESERVED
-CVE-2017-4945
-	RESERVED
+CVE-2017-4946 (The VMware V4H and V4PA desktop agents (6.x before 6.5.1) contain a ...)
+	TODO: check
+CVE-2017-4945 (VMware Workstation (14.x and 12.x) and Fusion (10.x and 8.x) contain a ...)
+	TODO: check
 CVE-2017-4944
 	RESERVED
 CVE-2017-4943 (VMware vCenter Server Appliance (vCSA) (6.5 before 6.5 U1d) contains a ...)
@@ -58699,563 +58735,563 @@ CVE-2017-2091 (Cybozu Garoon 3.0.0 to 4.2.3 allows remote authenticated attacker
 CVE-2017-2090 (Directory traversal vulnerability in CubeCart versions prior to 6.1.4 ...)
 	NOT-FOR-US: CubeCart
 CVE-2017-2089
-	RESERVED
+	REJECTED
 CVE-2017-2088
-	RESERVED
+	REJECTED
 CVE-2017-2087
-	RESERVED
+	REJECTED
 CVE-2017-2086
-	RESERVED
+	REJECTED
 CVE-2017-2085
-	RESERVED
+	REJECTED
 CVE-2017-2084
-	RESERVED
+	REJECTED
 CVE-2017-2083
-	RESERVED
+	REJECTED
 CVE-2017-2082
-	RESERVED
+	REJECTED
 CVE-2017-2081
-	RESERVED
+	REJECTED
 CVE-2017-2080
-	RESERVED
+	REJECTED
 CVE-2017-2079
-	RESERVED
+	REJECTED
 CVE-2017-2078
-	RESERVED
+	REJECTED
 CVE-2017-2077
-	RESERVED
+	REJECTED
 CVE-2017-2076
-	RESERVED
+	REJECTED
 CVE-2017-2075
-	RESERVED
+	REJECTED
 CVE-2017-2074
-	RESERVED
+	REJECTED
 CVE-2017-2073
-	RESERVED
+	REJECTED
 CVE-2017-2072
-	RESERVED
+	REJECTED
 CVE-2017-2071
-	RESERVED
+	REJECTED
 CVE-2017-2070
-	RESERVED
+	REJECTED
 CVE-2017-2069
-	RESERVED
+	REJECTED
 CVE-2017-2068
-	RESERVED
+	REJECTED
 CVE-2017-2067
-	RESERVED
+	REJECTED
 CVE-2017-2066
-	RESERVED
+	REJECTED
 CVE-2017-2065
-	RESERVED
+	REJECTED
 CVE-2017-2064
-	RESERVED
+	REJECTED
 CVE-2017-2063
-	RESERVED
+	REJECTED
 CVE-2017-2062
-	RESERVED
+	REJECTED
 CVE-2017-2061
-	RESERVED
+	REJECTED
 CVE-2017-2060
-	RESERVED
+	REJECTED
 CVE-2017-2059
-	RESERVED
+	REJECTED
 CVE-2017-2058
-	RESERVED
+	REJECTED
 CVE-2017-2057
-	RESERVED
+	REJECTED
 CVE-2017-2056
-	RESERVED
+	REJECTED
 CVE-2017-2055
-	RESERVED
+	REJECTED
 CVE-2017-2054
-	RESERVED
+	REJECTED
 CVE-2017-2053
-	RESERVED
+	REJECTED
 CVE-2017-2052
-	RESERVED
+	REJECTED
 CVE-2017-2051
-	RESERVED
+	REJECTED
 CVE-2017-2050
-	RESERVED
+	REJECTED
 CVE-2017-2049
-	RESERVED
+	REJECTED
 CVE-2017-2048
-	RESERVED
+	REJECTED
 CVE-2017-2047
-	RESERVED
+	REJECTED
 CVE-2017-2046
-	RESERVED
+	REJECTED
 CVE-2017-2045
-	RESERVED
+	REJECTED
 CVE-2017-2044
-	RESERVED
+	REJECTED
 CVE-2017-2043
-	RESERVED
+	REJECTED
 CVE-2017-2042
-	RESERVED
+	REJECTED
 CVE-2017-2041
-	RESERVED
+	REJECTED
 CVE-2017-2040
-	RESERVED
+	REJECTED
 CVE-2017-2039
-	RESERVED
+	REJECTED
 CVE-2017-2038
-	RESERVED
+	REJECTED
 CVE-2017-2037
-	RESERVED
+	REJECTED
 CVE-2017-2036
-	RESERVED
+	REJECTED
 CVE-2017-2035
-	RESERVED
+	REJECTED
 CVE-2017-2034
-	RESERVED
+	REJECTED
 CVE-2017-2033
-	RESERVED
+	REJECTED
 CVE-2017-2032
-	RESERVED
+	REJECTED
 CVE-2017-2031
-	RESERVED
+	REJECTED
 CVE-2017-2030
-	RESERVED
+	REJECTED
 CVE-2017-2029
-	RESERVED
+	REJECTED
 CVE-2017-2028
-	RESERVED
+	REJECTED
 CVE-2017-2027
-	RESERVED
+	REJECTED
 CVE-2017-2026
-	RESERVED
+	REJECTED
 CVE-2017-2025
-	RESERVED
+	REJECTED
 CVE-2017-2024
-	RESERVED
+	REJECTED
 CVE-2017-2023
-	RESERVED
+	REJECTED
 CVE-2017-2022
-	RESERVED
+	REJECTED
 CVE-2017-2021
-	RESERVED
+	REJECTED
 CVE-2017-2020
-	RESERVED
+	REJECTED
 CVE-2017-2019
-	RESERVED
+	REJECTED
 CVE-2017-2018
-	RESERVED
+	REJECTED
 CVE-2017-2017
-	RESERVED
+	REJECTED
 CVE-2017-2016
-	RESERVED
+	REJECTED
 CVE-2017-2015
-	RESERVED
+	REJECTED
 CVE-2017-2014
-	RESERVED
+	REJECTED
 CVE-2017-2013
-	RESERVED
+	REJECTED
 CVE-2017-2012
-	RESERVED
+	REJECTED
 CVE-2017-2011
-	RESERVED
+	REJECTED
 CVE-2017-2010
-	RESERVED
+	REJECTED
 CVE-2017-2009
-	RESERVED
+	REJECTED
 CVE-2017-2008
-	RESERVED
+	REJECTED
 CVE-2017-2007
-	RESERVED
+	REJECTED
 CVE-2017-2006
-	RESERVED
+	REJECTED
 CVE-2017-2005
-	RESERVED
+	REJECTED
 CVE-2017-2004
-	RESERVED
+	REJECTED
 CVE-2017-2003
-	RESERVED
+	REJECTED
 CVE-2017-2002
-	RESERVED
+	REJECTED
 CVE-2017-2001
-	RESERVED
+	REJECTED
 CVE-2017-2000
-	RESERVED
+	REJECTED
 CVE-2017-1999
-	RESERVED
+	REJECTED
 CVE-2017-1998
-	RESERVED
+	REJECTED
 CVE-2017-1997
-	RESERVED
+	REJECTED
 CVE-2017-1996
-	RESERVED
+	REJECTED
 CVE-2017-1995
-	RESERVED
+	REJECTED
 CVE-2017-1994
-	RESERVED
+	REJECTED
 CVE-2017-1993
-	RESERVED
+	REJECTED
 CVE-2017-1992
-	RESERVED
+	REJECTED
 CVE-2017-1991
-	RESERVED
+	REJECTED
 CVE-2017-1990
-	RESERVED
+	REJECTED
 CVE-2017-1989
-	RESERVED
+	REJECTED
 CVE-2017-1988
-	RESERVED
+	REJECTED
 CVE-2017-1987
-	RESERVED
+	REJECTED
 CVE-2017-1986
-	RESERVED
+	REJECTED
 CVE-2017-1985
-	RESERVED
+	REJECTED
 CVE-2017-1984
-	RESERVED
+	REJECTED
 CVE-2017-1983
-	RESERVED
+	REJECTED
 CVE-2017-1982
-	RESERVED
+	REJECTED
 CVE-2017-1981
-	RESERVED
+	REJECTED
 CVE-2017-1980
-	RESERVED
+	REJECTED
 CVE-2017-1979
-	RESERVED
+	REJECTED
 CVE-2017-1978
-	RESERVED
+	REJECTED
 CVE-2017-1977
-	RESERVED
+	REJECTED
 CVE-2017-1976
-	RESERVED
+	REJECTED
 CVE-2017-1975
-	RESERVED
+	REJECTED
 CVE-2017-1974
-	RESERVED
+	REJECTED
 CVE-2017-1973
-	RESERVED
+	REJECTED
 CVE-2017-1972
-	RESERVED
+	REJECTED
 CVE-2017-1971
-	RESERVED
+	REJECTED
 CVE-2017-1970
-	RESERVED
+	REJECTED
 CVE-2017-1969
-	RESERVED
+	REJECTED
 CVE-2017-1968
-	RESERVED
+	REJECTED
 CVE-2017-1967
-	RESERVED
+	REJECTED
 CVE-2017-1966
-	RESERVED
+	REJECTED
 CVE-2017-1965
-	RESERVED
+	REJECTED
 CVE-2017-1964
-	RESERVED
+	REJECTED
 CVE-2017-1963
-	RESERVED
+	REJECTED
 CVE-2017-1962
-	RESERVED
+	REJECTED
 CVE-2017-1961
-	RESERVED
+	REJECTED
 CVE-2017-1960
-	RESERVED
+	REJECTED
 CVE-2017-1959
-	RESERVED
+	REJECTED
 CVE-2017-1958
-	RESERVED
+	REJECTED
 CVE-2017-1957
-	RESERVED
+	REJECTED
 CVE-2017-1956
-	RESERVED
+	REJECTED
 CVE-2017-1955
-	RESERVED
+	REJECTED
 CVE-2017-1954
-	RESERVED
+	REJECTED
 CVE-2017-1953
-	RESERVED
+	REJECTED
 CVE-2017-1952
-	RESERVED
+	REJECTED
 CVE-2017-1951
-	RESERVED
+	REJECTED
 CVE-2017-1950
-	RESERVED
+	REJECTED
 CVE-2017-1949
-	RESERVED
+	REJECTED
 CVE-2017-1948
-	RESERVED
+	REJECTED
 CVE-2017-1947
-	RESERVED
+	REJECTED
 CVE-2017-1946
-	RESERVED
+	REJECTED
 CVE-2017-1945
-	RESERVED
+	REJECTED
 CVE-2017-1944
-	RESERVED
+	REJECTED
 CVE-2017-1943
-	RESERVED
+	REJECTED
 CVE-2017-1942
-	RESERVED
+	REJECTED
 CVE-2017-1941
-	RESERVED
+	REJECTED
 CVE-2017-1940
-	RESERVED
+	REJECTED
 CVE-2017-1939
-	RESERVED
+	REJECTED
 CVE-2017-1938
-	RESERVED
+	REJECTED
 CVE-2017-1937
-	RESERVED
+	REJECTED
 CVE-2017-1936
-	RESERVED
+	REJECTED
 CVE-2017-1935
-	RESERVED
+	REJECTED
 CVE-2017-1934
-	RESERVED
+	REJECTED
 CVE-2017-1933
-	RESERVED
+	REJECTED
 CVE-2017-1932
-	RESERVED
+	REJECTED
 CVE-2017-1931
-	RESERVED
+	REJECTED
 CVE-2017-1930
-	RESERVED
+	REJECTED
 CVE-2017-1929
-	RESERVED
+	REJECTED
 CVE-2017-1928
-	RESERVED
+	REJECTED
 CVE-2017-1927
-	RESERVED
+	REJECTED
 CVE-2017-1926
-	RESERVED
+	REJECTED
 CVE-2017-1925
-	RESERVED
+	REJECTED
 CVE-2017-1924
-	RESERVED
+	REJECTED
 CVE-2017-1923
-	RESERVED
+	REJECTED
 CVE-2017-1922
-	RESERVED
+	REJECTED
 CVE-2017-1921
-	RESERVED
+	REJECTED
 CVE-2017-1920
-	RESERVED
+	REJECTED
 CVE-2017-1919
-	RESERVED
+	REJECTED
 CVE-2017-1918
-	RESERVED
+	REJECTED
 CVE-2017-1917
-	RESERVED
+	REJECTED
 CVE-2017-1916
-	RESERVED
+	REJECTED
 CVE-2017-1915
-	RESERVED
+	REJECTED
 CVE-2017-1914
-	RESERVED
+	REJECTED
 CVE-2017-1913
-	RESERVED
+	REJECTED
 CVE-2017-1912
-	RESERVED
+	REJECTED
 CVE-2017-1911
-	RESERVED
+	REJECTED
 CVE-2017-1910
-	RESERVED
+	REJECTED
 CVE-2017-1909
-	RESERVED
+	REJECTED
 CVE-2017-1908
-	RESERVED
+	REJECTED
 CVE-2017-1907
-	RESERVED
+	REJECTED
 CVE-2017-1906
-	RESERVED
+	REJECTED
 CVE-2017-1905
-	RESERVED
+	REJECTED
 CVE-2017-1904
-	RESERVED
+	REJECTED
 CVE-2017-1903
-	RESERVED
+	REJECTED
 CVE-2017-1902
-	RESERVED
+	REJECTED
 CVE-2017-1901
-	RESERVED
+	REJECTED
 CVE-2017-1900
-	RESERVED
+	REJECTED
 CVE-2017-1899
-	RESERVED
+	REJECTED
 CVE-2017-1898
-	RESERVED
+	REJECTED
 CVE-2017-1897
-	RESERVED
+	REJECTED
 CVE-2017-1896
-	RESERVED
+	REJECTED
 CVE-2017-1895
-	RESERVED
+	REJECTED
 CVE-2017-1894
-	RESERVED
+	REJECTED
 CVE-2017-1893
-	RESERVED
+	REJECTED
 CVE-2017-1892
-	RESERVED
+	REJECTED
 CVE-2017-1891
-	RESERVED
+	REJECTED
 CVE-2017-1890
-	RESERVED
+	REJECTED
 CVE-2017-1889
-	RESERVED
+	REJECTED
 CVE-2017-1888
-	RESERVED
+	REJECTED
 CVE-2017-1887
-	RESERVED
+	REJECTED
 CVE-2017-1886
-	RESERVED
+	REJECTED
 CVE-2017-1885
-	RESERVED
+	REJECTED
 CVE-2017-1884
-	RESERVED
+	REJECTED
 CVE-2017-1883
-	RESERVED
+	REJECTED
 CVE-2017-1882
-	RESERVED
+	REJECTED
 CVE-2017-1881
-	RESERVED
+	REJECTED
 CVE-2017-1880
-	RESERVED
+	REJECTED
 CVE-2017-1879
-	RESERVED
+	REJECTED
 CVE-2017-1878
-	RESERVED
+	REJECTED
 CVE-2017-1877
-	RESERVED
+	REJECTED
 CVE-2017-1876
-	RESERVED
+	REJECTED
 CVE-2017-1875
-	RESERVED
+	REJECTED
 CVE-2017-1874
-	RESERVED
+	REJECTED
 CVE-2017-1873
-	RESERVED
+	REJECTED
 CVE-2017-1872
-	RESERVED
+	REJECTED
 CVE-2017-1871
-	RESERVED
+	REJECTED
 CVE-2017-1870
-	RESERVED
+	REJECTED
 CVE-2017-1869
-	RESERVED
+	REJECTED
 CVE-2017-1868
-	RESERVED
+	REJECTED
 CVE-2017-1867
-	RESERVED
+	REJECTED
 CVE-2017-1866
-	RESERVED
+	REJECTED
 CVE-2017-1865
-	RESERVED
+	REJECTED
 CVE-2017-1864
-	RESERVED
+	REJECTED
 CVE-2017-1863
-	RESERVED
+	REJECTED
 CVE-2017-1862
-	RESERVED
+	REJECTED
 CVE-2017-1861
-	RESERVED
+	REJECTED
 CVE-2017-1860
-	RESERVED
+	REJECTED
 CVE-2017-1859
-	RESERVED
+	REJECTED
 CVE-2017-1858
-	RESERVED
+	REJECTED
 CVE-2017-1857
-	RESERVED
+	REJECTED
 CVE-2017-1856
-	RESERVED
+	REJECTED
 CVE-2017-1855
-	RESERVED
+	REJECTED
 CVE-2017-1854
-	RESERVED
+	REJECTED
 CVE-2017-1853
-	RESERVED
+	REJECTED
 CVE-2017-1852
-	RESERVED
+	REJECTED
 CVE-2017-1851
-	RESERVED
+	REJECTED
 CVE-2017-1850
-	RESERVED
+	REJECTED
 CVE-2017-1849
-	RESERVED
+	REJECTED
 CVE-2017-1848
-	RESERVED
+	REJECTED
 CVE-2017-1847
-	RESERVED
+	REJECTED
 CVE-2017-1846
-	RESERVED
+	REJECTED
 CVE-2017-1845
-	RESERVED
+	REJECTED
 CVE-2017-1844
-	RESERVED
+	REJECTED
 CVE-2017-1843
-	RESERVED
+	REJECTED
 CVE-2017-1842
-	RESERVED
+	REJECTED
 CVE-2017-1841
-	RESERVED
+	REJECTED
 CVE-2017-1840
-	RESERVED
+	REJECTED
 CVE-2017-1839
-	RESERVED
+	REJECTED
 CVE-2017-1838
-	RESERVED
+	REJECTED
 CVE-2017-1837
-	RESERVED
+	REJECTED
 CVE-2017-1836
-	RESERVED
+	REJECTED
 CVE-2017-1835
-	RESERVED
+	REJECTED
 CVE-2017-1834
-	RESERVED
+	REJECTED
 CVE-2017-1833
-	RESERVED
+	REJECTED
 CVE-2017-1832
-	RESERVED
+	REJECTED
 CVE-2017-1831
-	RESERVED
+	REJECTED
 CVE-2017-1830
-	RESERVED
+	REJECTED
 CVE-2017-1829
-	RESERVED
+	REJECTED
 CVE-2017-1828
-	RESERVED
+	REJECTED
 CVE-2017-1827
-	RESERVED
+	REJECTED
 CVE-2017-1826
-	RESERVED
+	REJECTED
 CVE-2017-1825
-	RESERVED
+	REJECTED
 CVE-2017-1824
-	RESERVED
+	REJECTED
 CVE-2017-1823
-	RESERVED
+	REJECTED
 CVE-2017-1822
-	RESERVED
+	REJECTED
 CVE-2017-1821
-	RESERVED
+	REJECTED
 CVE-2017-1820
-	RESERVED
+	REJECTED
 CVE-2017-1819
-	RESERVED
+	REJECTED
 CVE-2017-1818
-	RESERVED
+	REJECTED
 CVE-2017-1817
-	RESERVED
+	REJECTED
 CVE-2017-1816
-	RESERVED
+	REJECTED
 CVE-2017-1815
-	RESERVED
+	REJECTED
 CVE-2017-1814
-	RESERVED
+	REJECTED
 CVE-2017-1813
-	RESERVED
+	REJECTED
 CVE-2017-1812
-	RESERVED
+	REJECTED
 CVE-2017-1811
-	RESERVED
+	REJECTED
 CVE-2017-1810
 	RESERVED
 CVE-2017-1809
@@ -122913,8 +122949,8 @@ CVE-2014-8581
 	RESERVED
 CVE-2014-8580 (Citrix NetScaler Application Delivery Controller and NetScaler Gateway ...)
 	NOT-FOR-US: Citrix Netscaler
-CVE-2014-8579
-	RESERVED
+CVE-2014-8579 (TRENDnet TEW-823DRU devices with firmware before 1.00b36 have a ...)
+	TODO: check
 CVE-2014-8578 (Cross-site scripting (XSS) vulnerability in the Groups panel in ...)
 	- horizon 2014.1.1-3
 	[wheezy] - horizon <not-affected> (Vulnerable code not present)
@@ -123057,8 +123093,7 @@ CVE-2014-8554 (SQL injection vulnerability in the mc_project_get_attachments fun
 	NOTE: http://www.mantisbt.org/bugs/view.php?id=17812
 	NOTE: http://github.com/mantisbt/mantisbt/commit/99ffb0af (1.2.x branch)
 	NOTE: http://github.com/mantisbt/mantisbt/commit/5faf97ab (master)
-CVE-2014-8540
-	RESERVED
+CVE-2014-8540 (The groups API in GitLab 6.x and 7.x before 7.4.3 allows remote ...)
 	- gitlab <not-affected> (Fixed before initial upload to Debian)
 CVE-2014-8538 (The Hijab Modern (aka com.Aisyaidea.HijabModern) application 1.0 for ...)
 	NOT-FOR-US: Hijab Modern (aka com.Aisyaidea.HijabModern) application for Android
@@ -123605,10 +123640,10 @@ CVE-2014-8338
 	RESERVED
 CVE-2014-8337
 	RESERVED
-CVE-2014-8336
-	RESERVED
-CVE-2014-8335
-	RESERVED
+CVE-2014-8336 (The "Sql Run Query" panel in WP-DBManager (aka Database Manager) ...)
+	TODO: check
+CVE-2014-8335 ((1) wp-dbmanager.php and (2) database-manage.php in the WP-DBManager ...)
+	TODO: check
 CVE-2014-8334 (The WP-DBManager (aka Database Manager) plugin before 2.7.2 for ...)
 	NOT-FOR-US: WordPress plugin wp-dbmanager
 CVE-2014-8332



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ce12aa0e8e9059d1a1a99cc227a40562af3598b4

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ce12aa0e8e9059d1a1a99cc227a40562af3598b4
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180105/b680e376/attachment-0001.html>


More information about the Secure-testing-commits mailing list