[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Triaging result
Ola Lundqvist
opal at debian.org
Mon Mar 26 20:12:08 UTC 2018
Ola Lundqvist pushed to branch master at Debian Security Tracker / security-tracker
Commits:
032fd3ea by Ola Lundqvist at 2018-03-26T22:11:47+02:00
Triaging result
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -346,16 +346,19 @@ CVE-2018-8883 (Netwide Assembler (NASM) 2.13.02rc2 has a buffer over-read in the
- nasm <unfixed> (low)
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <ignored> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392447
CVE-2018-8882 (Netwide Assembler (NASM) 2.13.02rc2 has a stack-based buffer under-read ...)
- nasm <unfixed> (low)
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <ignored> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392445
CVE-2018-8881 (Netwide Assembler (NASM) 2.13.02rc2 has a heap-based buffer over-read ...)
- nasm <unfixed> (low)
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <ignored> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392446
CVE-2018-8880
RESERVED
@@ -4877,6 +4880,7 @@ CVE-2018-7183 (Buffer overflow in the decodearr function in ntpq in ntp 4.2.8p6
CVE-2018-7182 (The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows ...)
- ntp 1:4.2.8p11+dfsg-1
- ntpsec 1.0.0+dfsg1-5
+ [wheezy] - ntp <not-affected> (Issue not present)
NOTE: http://www.kb.cert.org/vuls/id/961909
NOTE: http://support.ntp.org/bin/view/Main/NtpBug3412
NOTE: http://support.ntp.org/bin/view/Main/SecurityNotice#February_2018_ntp_4_2_8p11_NTP_S
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/032fd3eaef7968a3e34a729e23d74c39d381f08e
---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/032fd3eaef7968a3e34a729e23d74c39d381f08e
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180326/79a14a32/attachment-0001.html>
More information about the Secure-testing-commits
mailing list