[Git][security-tracker-team/security-tracker][master] automatic update

Salvatore Bonaccorso carnil at debian.org
Thu Nov 8 08:10:29 GMT 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9560045d by security tracker role at 2018-11-08T08:10:20Z
automatic update

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,33 @@
+CVE-2018-19108
+	RESERVED
+CVE-2018-19107
+	RESERVED
+CVE-2018-19106
+	RESERVED
+CVE-2018-19105
+	RESERVED
+CVE-2018-19104
+	RESERVED
+CVE-2018-19103
+	RESERVED
+CVE-2018-19102
+	RESERVED
+CVE-2018-19101
+	RESERVED
+CVE-2018-19100
+	RESERVED
+CVE-2018-19099
+	RESERVED
+CVE-2018-19098
+	RESERVED
+CVE-2018-19097
+	RESERVED
+CVE-2018-19096
+	RESERVED
+CVE-2018-19095
+	RESERVED
+CVE-2018-19094
+	RESERVED
 CVE-2018-19093 (** DISPUTED ** An issue has been found in libIEC61850 v1.3. It is a ...)
 	NOT-FOR-US: libIEC61850
 CVE-2018-19092 (An issue was discovered in YzmCMS v5.2. It has XSS via a ...)
@@ -6965,8 +6995,8 @@ CVE-2018-16255
 	RESERVED
 CVE-2018-16254
 	RESERVED
-CVE-2018-16253
-	RESERVED
+CVE-2018-16253 (In sig_verify() in x509.c in axTLS version 2.1.3 and before, the ...)
+	TODO: check
 CVE-2018-16252 (FsPro Labs Event Log Explorer 4.6.1.2115 has ".elx" FileType XML ...)
 	NOT-FOR-US: FsPro Labs Event Log Explorer
 CVE-2018-16251
@@ -7203,10 +7233,10 @@ CVE-2018-16151 (In verify_emsa_pkcs1_signature() in gmp_rsa_public_key.c in the
 	{DSA-4305-1 DLA-1522-1}
 	- strongswan 5.7.0-1
 	NOTE: https://strongswan.org/blog/2018/09/24/strongswan-vulnerability-(cve-2018-16151,-cve-2018-16152).html
-CVE-2018-16150
-	RESERVED
-CVE-2018-16149
-	RESERVED
+CVE-2018-16150 (In sig_verify() in x509.c in axTLS version 2.1.3 and before, the ...)
+	TODO: check
+CVE-2018-16149 (In sig_verify() in x509.c in axTLS version 2.1.3 and before, the ...)
+	TODO: check
 CVE-2018-16148 (The diagnosticsb2ksy parameter of the /rest endpoint in Opsview ...)
 	NOT-FOR-US: Opsview Monitor
 CVE-2018-16147 (The data parameter of the /settings/api/router endpoint in Opsview ...)
@@ -16722,21 +16752,21 @@ CVE-2018-12398
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-26/#CVE-2018-12398
 CVE-2018-12397
 	RESERVED
-	{DSA-4324-1}
+	{DSA-4324-1 DLA-1571-1}
 	- firefox-esr 60.3.0esr-1
 	- firefox 63.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/#CVE-2018-12397
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-26/#CVE-2018-12397
 CVE-2018-12396
 	RESERVED
-	{DSA-4324-1}
+	{DSA-4324-1 DLA-1571-1}
 	- firefox-esr 60.3.0esr-1
 	- firefox 63.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/#CVE-2018-12396
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-26/#CVE-2018-12396
 CVE-2018-12395
 	RESERVED
-	{DSA-4324-1}
+	{DSA-4324-1 DLA-1571-1}
 	- firefox-esr 60.3.0esr-1
 	- firefox 63.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/#CVE-2018-12395
@@ -16745,7 +16775,7 @@ CVE-2018-12394
 	RESERVED
 CVE-2018-12393
 	RESERVED
-	{DSA-4324-1}
+	{DSA-4324-1 DLA-1571-1}
 	- firefox-esr 60.3.0esr-1
 	- firefox 63.0-1
 	- thunderbird 1:60.3.0-1
@@ -16754,7 +16784,7 @@ CVE-2018-12393
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-28/#CVE-2018-12393
 CVE-2018-12392
 	RESERVED
-	{DSA-4324-1}
+	{DSA-4324-1 DLA-1571-1}
 	- firefox-esr 60.3.0esr-1
 	- firefox 63.0-1
 	- thunderbird 1:60.3.0-1
@@ -16771,7 +16801,7 @@ CVE-2018-12391
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-28/#CVE-2018-12391
 CVE-2018-12390
 	RESERVED
-	{DSA-4324-1}
+	{DSA-4324-1 DLA-1571-1}
 	- firefox-esr 60.3.0esr-1
 	- firefox 63.0-1
 	- thunderbird 1:60.3.0-1
@@ -16780,7 +16810,7 @@ CVE-2018-12390
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-28/#CVE-2018-12390
 CVE-2018-12389
 	RESERVED
-	{DSA-4324-1}
+	{DSA-4324-1 DLA-1571-1}
 	- firefox-esr 60.3.0esr-1
 	- thunderbird 1:60.3.0-1
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/#CVE-2018-12389



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/9560045dbe46a2aa0043cacd702b1bbb20448786

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/9560045dbe46a2aa0043cacd702b1bbb20448786
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181108/26515c1c/attachment.html>


More information about the debian-security-tracker-commits mailing list